Are You and Your Friends Fine — Virus Spam
Comments OffLogged into my Google Email and was checking my spam to see what I see and this one draws my attention:
I think I know where this is leading me but I click the link and this website with the Reuters logo pops up:
Now as you can tell this looks authentic but when I did go to this site, AVG detected some trojan. It blocked it, but the file that it is downloaded called “save.exe” and I have talked about flash player fake updates. I have seen other blogs talking about dirty bomb news report leads to malware. I don’t know about you but if I wanted to update my flash player, I go to the source and not use any links. It is wise not to download any programs or files and run them without properly checking them out for viruses and Trojans. You should have a firewall and anti-virus running at all times and that will help but it is your actions that help your prevent from getting viruses or Trojans.
Is Google the ultimate news source?
Comments OffAs you know We had a big problem Monday Night and All day Tuesday. If you are a regular reader of this blog, you would of noticed either a 503 or lag. It was due to an article that I released late Monday night about the PIFTS.EXE and the so call conspiracy.
At the time, I was wondering and quite disturbed about what Norton Symantec was doing to the forums. So I blogged about this and wouldn’t you know my site was Held Hostage by Google. I kid you not, I had so many people come to my site in under an hour it wasn’t even funny.
I got hit hard by Slashdot, Reddit.com, and Google. In truthfulness, It was more of searches and people coming from Google than anywhere else. I would say Google was the 90% and and Slashdot and Redidit was 8% and the rest was from other websites for this one article. Now don’t get me wrong the 2% of people was my normal amount of people for the day. So you can imagine how many people actually came to my site over this fiasco.
Thinking back to PIFTS.EXE.
Comments OffThinking to this very incident looks to something out of the movie “Lemony Snicket’s A Series of Unfortunate Events“. I won’t go into much detail but here is what I want answers to about the PIFTS.EXE. You see after I have read a great article talking in detail about this, I have also come to the conclusion something isn’t right.
Although, in Norton’s defense there seems to be a lot of information that they have to sort through. I’ll admit this information people are asking should be really simple to find in the Symantec Databases somewhere. I will not say they are hiding anything major but I do think something is going on that we are not aware of. Here’s some other thoughts to considers? If Norton needed to find out who was using Windows 7, couldn’t they of asked or even made a simple site redirect to find that information, after all anytime you visit a site you have that information sent to the stats. I could in theory find out how many visitors are visiting from Macs and how many are on older systems. That would be very easy to do with Google Analytics.
Conspiracy theories run rampent due to PIFTS.EXE
(Looks like some of this was a 4chan gag, check my other post about it)
All of the sudden people around the World are seeing PIFTS.EXE popping up. Norton Antivirus is asking users if they want to accept it. Here what I do know:
Here’s some information I pulled from my Zone Alarm Logs. Does this make sense to anyone?
2009/03/09 18:26:44 — New Program — PIFTS.exe — Destination IP: 67.134.208.160:80 — outgoing — blocked — Destination: ping.lifecycle.norton.com2009/03/09 18:47:52 — Program Access — PIFTS.exe — Destination IP: — outgoing — blocked — Destination:
2009/03/09 18:48:28 — Changed Program — Windows Explorer — 207.46.248.249.80 — outgoing — blocked — Destination: sa.windows.com
[Via The Symatec Forums]
This indicates that the program tried to change tactics to go out on the net. I look a look for this and it is SwapDrive. So this must be an update to Swapdrive but I am unsure as to why it pops up that way. The other ip is in Africa or at least take the .80 out of the equation and it points to an Africa IP. (It looks to my mistake in that little part, “to error is human” Check out this post about it) Although just recently Norton Decides to Delete that thread and people are really worried about why? Is this a cover up of some sort because there is a exploit in the Wild that we don’t know about? These are good questions that need to be answered. Here is what one posted about this just after they deleted the forum thread:
I hate Snopes Spam
Comments OffAs you know Snopes is used to find out about urban Legend and Rumors:
I received a Virus alert from my RSS feed about Email virus warning. It even adds a Snope URL. The Author just copies and pasted the virus warning into the blog without even going to Snopes.
According to Snopes and I’ll quote:
Although the Postcard virus is real, it isn’t a “BIG VIRUS COMING” (it’s already been around in multiple forms for a long time now), it will not “burn the whole hard disc” of your computer, CNN didn’t classify it as the “worst virus” ever, and it doesn’t arrive in messages bearing a subject line of ‘Invitation.’[Via Snopes]
Now as you can tell the link described in the blog post was “http://www.snopes.com/computer/virus/postcard.asp”. If you went there, you’d have seen this as a not really true and some parts of this might be but that part about burning your Hard drive or even consider the Worst virus isn’t true.
Some things you need to consider before forwarding anything is:
- Is it completely True?
- Is it Legitimate? (True blown warning about something like a product recall or something important like that)
Microsoft Releases the Patch Information for March
Comments OffMicrosoft Has Released the Patch information For march and This is what is expected to be patch on March 11, 2009:
- Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (Kb949029) — This security update resolves several privately reported and publicly reported vulnerabilities in Microsoft Office Excel that could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. (affected System : Microsoft Office)
Cracking and Warez sites are Host of Trouble!!
It is nothing to laugh at and should be understood that gamers have no freedom right now. That said this new Variant to Virux Trojan is in regards to Win32/Vitro Trojan. It seems tobe infecting .exe and .Scr files just like this.
According to Trend Micro:
The downloaded malware include variants under the FAKEAV, TDSS, and VUNDO families. Infection chains, however, are notable for the presence of VIRUT and VIRUX malware. VIRUX and VIRUT attacks were initially about the volume of infected PCs. The numbers are massive enough to worry Web users and security researchers: around 20,000 PCs are infected per day
Read more: “Crack Sites Distribute VIRUX and FakeAV“
Now it seems to be more and more sites with getting computer infected. It also seems the Malware writers are using these servers for helping infect essentially gamers computers. So for the time being, if you have a favorite game and you want to:
- No-CD Crack (This is good for those who want to play the game without the CD)
- Key Gen Cracks (This is used for pirated version of a game)
- Update Cracks (This is used to prevent CD checking or Also prevent Version Checking)
Rogue Fake Codecs on the Rise
Comments OffPanda Labs has been talking about Adware/VideoPlay and they are seeing a lot of variants on this. They even play a game, find the difference in the installation screen:

Now as you can see this look to be the same agreement in all those difference installation. Some things to consider Never install any software from a website that you don’t know Nothing about about.
Panda Labs also talks about these new variants in regards to what they do:
This file spreads by making copies of itself in the removable drives and it also creates an autorun.inf in order to be run when they are accessed. This file collects the data stored in the browsers, such as cookies, passwords, profiles, email accounts, etc, and connects to a remote address to send the information.
[Via Panda Labs Blog]
PolyMorphic Win32:Vitro Most Viraulent Virus
This seems to be an virus that is getting some people hit hard. I wanted to blog about this because of the nature of Virus and Trojans. I have read reports that this might be from Online Movies, and I have to say this is one reason why you must stay away from certain online movies. I am going to take a guess that this virus requires a special CODEC, and you downloaded it and installed it. It Could also be the update the Adobe Flash player idea to but still results in getting the Virus.
As I said before you take a risk when you go to sites you don’t trust or know anything about. You also should know that if you need a “SPECIAL” codec, you should just go on to another site. These sites that claim they need this special codec means only one thing they want to install something without your Knowledge.
So what is this Virus:
The Virut family of viruses uses polymorphism to hide from all anti-virus protection, it infects executable files. File infection makes it very hard to repair a system that has been infected. W32/Vitro injects code in running processes and hooks the following functions in ntdll.dll which transfers control to the virus every time any of these function calls are made.
The Next big Wave of Layoffs is Sony. (9,000 workers)
Comments Off
In a report from Engadget, there seems to be more Layoffs going on. One such one is Sony. Here is what Engadget said:
The bad news from the Japanese consumer electronics industry continues. Sony just announced plans to cut about 8,000 global jobs from its beleaguered electronics business while making unspecified reductions to its seasonal and temporary workforce. The move, as Sony explains it, comes “in response to the sudden and rapid changes in the global economic environment.” Ominously, it looks like Sony will also be raising prices in the countries where “Sony makes significant sales” (read: US and Europe) if we’re reading this statement correctly:
[Via Engadget]
Are you patched, Secunia Says NO
Comments Off
Think you’ve got nothing to worry about, according to Secunia 98% of computers are not fully patched and are vulnerable to some kinda of attack.
If you have a system that is off of the Net you could use the Clone of Autopatcher Program to do it for you. You also need to update all your secondary programs such as Audacity, Open Office, and other programs that you use weekly.
sinowal.trojan Problems.
Comments Off
Trojan-PSW:W32/Sinowal.CP drops and loads a password stealing component on the infected system and tries to steal account information from it. It also tries to steal information that is required to access certain online banks’ and online payment systems’ websites.[via F-secure]
This are the beginning steps to get rid of a Virus but it will be a really hard virus because it wants to stay in your system. You should also Restart in Safe mode and Try to remove that virus that one. You will also want to disable your system restore due to the fact that it will be in there and might come back if you restore your system. Just some simple tips to help keep you safe on the net.
Viacom and ATT layoff some people. (12,850 People)
Comments Off
Today, we are announcing a company-wide restructuring plan that includes staffing reductions in all divisions. This will result in a reduction of our worldwide workforce of approximately 7 percent, or about 850 positions. We are also suspending salary increases for the Company’s senior level management in 2009. In addition, after a comprehensive review of our operations, we will write down certain programming and other assets. These three actions will bring us significant cost savings and other efficiencies.
[via Gawker]
AT&T Inc. joined the recession’s parade of layoffs Thursday by announcing plans to cut 12,000 jobs, about 4 percent of its work force.
[Via Associated Press]
So in all today total that is 12,850 people who are going to be laid off. This is another set of layoffs but isn’t the last to see the whole list of of Layoffs in the Tech industry that I’ve talked about please click this link. You may find some usefull tidbits if you search my blog enough, I’ve got some great tips on getting hired and what you should do to be prepared.
Vista Sp2 Beta Still not up yet!
Comments Off
Is this Windows 7?
Comments OffAs you can see that looks to be the final release of the start screen. In the past they haven’t change the start screen, it looks to be really polished and ready for use with Windows 7. If anything, I think the boot screen will be permanent and definitely not temporary. On a Side note, I found this video as well:
I also found one more little Video that looks to be promising, it’s called Windows 7 Super bar. This little Video looks convincingly like this will be kept in Windows 7 but you know how Microsoft is on beta’s. Any how, Here’s this one:
Windows 7 Super Bar from Paul Jenkins on Vimeo.
Hello Twitter, Goodbye Pounce!

In a move that feels more like a cruel prank than a financial strategy, Six Apart has purchased Pownce–only to shut the company down. The blogging company acquired the micro-blogging site for an undisclosed sum before announcing that it would shut Pownce in a mere two weeks.
[via PcMag]
Although if Six Apart was smart they should of tried to Monitize the service but I guess they just wasted there money in buying Pounce. They wanted something else from the company that owned Pounce but not sure what.
Vista To release Service Pack 2 in April 2009

Podcasters are in up in arms over Ustream.tv

REVISED:
Technorati Officially laysoff 6 people!!
Comments Off
Technorati released today they are going to Lay off 6 people and I will quote:
Unfortunately, this means sacrifices. Technorati’s management team members are taking pay cuts ranging from 15-25% and employees are taking 10% cut. This also includes the reallocation of staff. We’re laying off six employees today – including two executives — and there are two additional departures we won’t replace. These are high performers who have worked long hours to get us where we are now. They’re also friends, and we’re very sad to see them go. We simply need a leaner and reconfigured mix to get us through 2009.[via Technorati Weblog]
They will also be taking pay cuts all through the company. So the recession is hitting them also. I am sure CEO Richard Jalichandra has the company interest in mind. According to Techchunch, they have added these recent layoffs ticker. You can also search my blog for other layoffs that have happened or will happen.
Citigroup bank might be saved through the recession.
Comments OffAccording to reports from ABC News, Citibank is having a hard time and might need to be assisted by the government.
The company has seen its shares lose 60 percent of their value in the past week, reflecting a crisis of confidence among skittish investors. They are worried all the risky debt on Citigroup’s balance sheet will turn into losses as the economy worsens and the markets stay turbulent — losses that could be nearly impossible to reverse.
[via ABC News]
Although this is somewhat expected, I don’t think we can afford to pay the debt of a bank. We are all having to deal with this recession. I don’t know how they can afford to pay for Citigroup and expect this to help bolster the economy. I guess only time will tell!!!
Youtube gets ready to Launch “LIVE Event!!” 5pm PST/8pm EST
Comments OffAs the time approaches for the live even for Youtube. There are many confirmed and only one I want to see right now. As many people will agree that Mythbusters is the best show on Discovery Channel. They have been confirmed to be there tomorrow.

Some of the major players confirmed to be there are Mythbusters, Soulja Boy Tell’em, Katy Perry, Esmee Denters, Akon, FRED, and Will. I. Am. Now I don’t know all these stars. I do Know Mythbusters and I’ve heard of FRED. I’m just stating who is going to be there.
How to disable autorun the easy way!!!
Comments OffI read a report from Cnet about USB devices spreading Virus and I will quote:
The bad guys are intentionally developing new flavors of malware designed to propagate through USB devices,” said Gunter Ollmann, chief security strategist for IBM’s ISS security division. “They are today’s floppy drives.”
An infected computer can spread a virus to a clean USB thumb drive that is inserted. That USB drive will then be spreading the virus onto other computers if the operating system on those machines has an AutoRun-type feature enabled. The AutoRun function in Windows launches installers and other programs automatically when a flash drive or CD is inserted. The Mac has an equivalent function, according to Ollmann.[Via Cnet]
In order to disable “autorun“, which in Vista is called Autoplay. In order to disable Autoplay from starting when you insert media into your computer here is how you do it:
You will need to be Logged in as Administrator before this can be done:
Next click start and type “Autoplay” without quotes. It will bring up a screen but all you have to worry about is this:
Vista has a new Vulnebility!
Comments OffAccording to Techworld.com, Vista has a new Vulnerability that could let a hacker infect a Vista machine with a rootkit. The talk from them is quite intriguing. I will quote it to better let you know what the Vulnerability is:
The vulnerability could allow a hacker to install a rootkit, a small piece of malicious software that is very difficult to detect and remove from a computer, Unterleitner said.
Phion notified Microsoft about the problem on 22 October. Microsoft indicated to Phion that it would issue a patch with Vista’s next service pack. Microsoft released a beta version of Vista’s second service pack to testers last month. Vista’s Service Pack 2 is due for release by June 2009.
[via Techworld.com]
The way they could do this is through the Device IO Control which in turn could corrupt the Kernel of Windows Vista. Now we all know that Microsoft will release a patch quicker than 6 months away. According to this article, people are already looking for the exploit and want to know more about it. I would be willing to bet they will have a patch out sooner than later. Probably January or Febuary, which will be a big deal because no one will expect it. I would also imagine hackers will start trying to figure out how they could install software as quick as possible before Microsoft pushes out the patch. So what can you do to protect yourself, Get a firewall, a Antivirus and learn how to protect yourself to prevent yourself from getting a computer virus.
Hulu Launches the Hulu for the Holidays!
Comments Off
Some movies or show that will probably come to Hulu are going to be Christmas themes. I would wager it will be Charlie Brown, Peanuts, The Grinch who Stole Christmas. I am sure there will be even more later on, ones that I didn’t think would come to Hulu. We shall see what comes from what they want to do the next few weeks. To bad they aren’t doing clues this time around people seemed to like doing that.
Stargate Atlantis ends after the 5 Season!
Comments Off
Atlantis remains an extremely strong performer in DVR-delayed viewing, though, often building as much as 25 to 30 percent on its premiere night audience.
I kept saying Atlantis should of been on Hulu, just like every other show they would have a more solid audience and more viewers to count. The only reason Eureka and others got more ratings was because they could watch the latest shows on Scifi or Even Hulu. Unlike Stargate Atlantis on Hulu, they only have small clips. In order to build a fanbase, you need to build around the most current way to show the show off. Granted it still did rather well with ratings and all but it could of done better by putting it on HULU. There are sites out there that would like to Save Atlantis and I agree with them. I would love to see more seasons of Atlantis, and see it on HULU.
Looks like a scam to me : Personal Shopping Assistant!
Good afternoon!
We found your resume at _________________ and we would like to propose you a
position of Personal Shopping Assistant.Imagine having an exciting job with incredible salary (up to $100,000/year) that
lets you use your creativity while being paid to shop. Welcome to the world of
personal shopping!As we know shopping is the world’s favorite leisure activity, but in our busy
society an increasing number of people need to hire someone to do their
shopping. Thus personal shoppers are more in demand than ever before.There are absolutely NO START-UP FEES and NO FEES for being employed at this
position. As long as you live in the USA, and you have a credit card or any
other line of credit, have 1 or 2 free hours during the day – you are eligible
for this job!
This is what you will have to do in short:
• Purchase the requested goods using your credit card.
• Send us receipts.
• Wait for us to issue a credit to your credit card in the amount of purchase
plus shipping fee plus your commission which comprises 10%.
• Ship out the goods.
• You are finished, come back for a new list of goods.
A good free VPN Client — OpenVPN & more
Comments OffI’ve been doing some research on what might be good to use in case, I was away from my home network. I was thinking how safe am I at Starbucks or other places that I might doing my web. So I did a little looking around to see which one I liked and I came to the conclusions that only one I need right now is:

The nice thing about this was the simple installation of the software and how easy it was to set it up. This service is in beta but seems to be really well done with regards to the end users. When you install this software and want to connect it uses the OpenVPN software with there configurations. OpenVPN, is a open sourced SSL VPN solution and is free to use. The way this this free is of Ad Supported banners. Now it is cheaper than paying monthly for a VPN service. The ones I’ve found so far are these few:
- OpenVPN (FREE)(*advertisement)(Linux, and Windows)
- Always VPN (Prepay) (5 GB to 80 GB limit) (Linux, Mac and Windows)*Out of Beta
- Hotspot Shield (FREE) (*advertisement) (Windows) (3 gig Cap)
Comfirmed: DHL to Lays off 10,000 workers!!
Comments OffAccording to The Press-Enterprise has announced all 18 U.S. Hubs will close and that means 10,000 workers will be out of a job. They will keep 3,000 for international business. I wanted to tell everyone about this as soon as I found out.
There is a rumor that DHL might layoff some of it’s employees. About 8,000 Jobs will be announced to tomorrow when they release the earnings report. Now I know very little about this parent company but they have 475,100 employees and that would mean 1.6% of the people would be laid off!!
According to Business Week there Volume have been going down this year.
(CNN) — A southern Ohio community is bracing for possible layoffs as DHL Express — the largest employer in the area — planned to announce its quarterly earnings report and restructuring details. [Via CNN]
Rumor: GE to be the next to layoff its workers!!
Comments Off
GE to Layoff it workers!
According to sources of friends close to me, their seems to be a consensus that there will be a major layoff coming from GE. My source is talking about it being a lot of people will be laid off and that it will start happening in the coming weeks.
According to Yahoo Finance saying this “52 week change of GE is -50.86% from last year. ”
Avg detected Trojan Horse Generic 12.htc?
Just got a warning from AVG about, trojan horse generic 12.HTC, haven’t heard of it, anyone out there hear if this one? apparently it infects explore.exe, and after months of explore.exe crashing I’d say it’s a legit virus.
[Via Answer Bag]
Some tricks and tips to remove this little virus is quite simple. It is embedded in your system so how do you remove this threat? Easy follow these steps and you will have a better chance of getting rid of the virus:
- Find out all you can on the virus – Finding out the extent of where the virus lays is really a good idea. Just because you found one place doesn’t mean it isn’t also hiding some other place. Some good ways to figure out where it might be is to download Hijackthis and Then onces you download it and install. Run it, and when you get the LOG file you will want to go to HijackThis Log Analysis Site 1 and HijackThis Log Analysis Site 2, and see what it says.
Bad Behavior has blocked 908 access attempts in the last 7 days.
© 2009-2010 Tech-Linkblog.com All Rights Reserved -- Copyright notice by Blog Copyright
Tech-Linkblog.com is Digg proof thanks to caching by WP Super Cache











