Anti Virus Softwares

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Tuesday, 22 July 2008

News Headlines Still Out of Control

Posted on 17:51 by Unknown
We reviewed 66 websites which were found in email messages which made reference to today's News Headline Infection file, "/viewmovie.html".



Forty-one of the domains were live at the time of this review.

Not all of those actually had the virus live on them though . . .

Those which did, download a file "codecinst.exe" after telling the visitor they are missing the proper Codec to view the video file.

My McAfee Anti-Virus doesn't currently detect this file as being a virus, however many others do, including Norton, which strangely calls it "Trojan.Pandex".

The websites which were hacked in order to host the infection files include:

http://aelnoz.org/viewmovie.html
http://afg.es/viewmovie.html
http://albertruiz.net/viewmovie.html
http://asjsiderno.it/viewmovie.html
http://automoviliaria.es/viewmovie.html
http://bazweb.com/viewmovie.html
http://billmannart.com/viewmovie.html
http://cagliosrl.it/viewmovie.html
http://candou.com.br/viewmovie.html
http://carlacruz.es/viewmovie.html
http://ceramix.it/viewmovie.html
http://edv-basics.de/viewmovie.html
http://emineacar.com/viewmovie.html
http://espaideioga.net/viewmovie.html
http://factoria3.com/viewmovie.html
http://finquattro.eu/viewmovie.html
http://fonderialtopascio.it/viewmovie.html
http://galvatoledo.com/viewmovie.html
http://gennarogirone.it/viewmovie.html
http://groupjing.com/viewmovie.html
http://helgenaesvand.dk/viewmovie.html
http://ilariarezzi.it/viewmovie.html
http://investimentibrasile.com/viewmovie.html
http://jaim.virtualvalley.nl/viewmovie.html
http://kwhgs.ca/viewmovie.html
http://laconchigliadoro.it/viewmovie.html
http://last-minute-reisen-4u.de/viewmovie.html
http://leonardodavi.com/viewmovie.html
http://matteociaramitaro.it/viewmovie.html
http://millefiori.com.br/viewmovie.html
http://nebottorrella.com/viewmovie.html
http://neticon.pl/viewmovie.html
http://overunity.it/viewmovie.html
http://projetsoft.net/viewmovie.html
http://samecru.com/viewmovie.html
http://scuderiabiasuzzi.it/viewmovie.html
http://sguardoinfinito.com/viewmovie.html
http://singtwice.de/viewmovie.html
http://sugar-dreams.it/viewmovie.html
http://tautau.web.simplesnet.pt/viewmovie.html
http://textilhogarnovadecor.com/viewmovie.html
http://thewindsorhotel.it/viewmovie.html
http://villamariamerano.com/viewmovie.html
http://www.agon.ro/viewmovie.html
http://www.anakonda.info/viewmovie.html
http://www.angelobaldy.it/viewmovie.html
http://www.baccarelli.it/viewmovie.html
http://www.bachir.it/viewmovie.html
http://www.bedbreakfast.na.it/viewmovie.html
http://www.bojan.de/viewmovie.html
http://www.clickjava.net/viewmovie.html
http://www.dammer.info/viewmovie.html
http://www.djlofty.pwp.blueyonder.co.uk/viewmovie.html
http://www.edifil.es/viewmovie.html
http://www.frappevending.com/viewmovie.html
http://www.fytema.es/viewmovie.html
http://www.gildas-saliou.com/viewmovie.html
http://www.go-art-morelli.de/viewmovie.html
http://www.go-siegmund.de/viewmovie.html
http://www.hgleichner.de/viewmovie.html
http://www.itelimpianti.com/viewmovie.html
http://www.koehler-hausverwaltung.de/viewmovie.html
http://www.nepi.si/viewmovie.html
http://www.radieschenhein.de/viewmovie.html
http://www.sorayamodella.com/viewmovie.html
http://www.wortmannweb.de/viewmovie.html

As many as 21 of these domains were hosted on a single IP address, 195.110.124.133, which is actually on the "DadaNet" hosting provider in Italy. (We've sent them a notice with the 23 domain names, including 2 others on 195.110.124.188.)

97 different Spam subjects were used by this campaign (or group of campaigns) in the past 48 hours.

"brainstorming" To Be Banned Under Equality And Diversity Rules
[audio] Catholic Church Condemns Metrosexuality
[audio] Church Group Offers Homosexual New Life In Closet
[audio] Mccain Vows To Withdraw All Troops From The U.S.
[video] Bush Tours America To Survey Damage Caused By His Disastrous Presidency
[video] Hulk Smashed
2008 Presidential Election Results Leaked
Al Qaeda Reports Declining Revenues in Fiscal '08
All Baseball Players May Be Indicted For Steroid Abuse
Angeline Jolie Pregnancy. 'it Was All A Hoax!'
Army Relent On Shooting Live Pigs In Training Exercise - Will Shoot Illegal Immigrants Instead
Arnold Says im Gay Too!
Barack Obama Caught In A Time Warp
Bearded Lady Gives Birth
Blair:Im Not Gay, Thats Just My Accent
Boy 4, pulls off sister's ear
Boy pokes fork into sister's eye
Brave Suicide Bomber Survives Blast!
Bush Down to 8 Friends on Myspace
Bush Sells Louisiana Back to the French
Bush 'Troubled by Gay Marriages. Declares San Francisco Part of 'Axis of Evil'
Cindy Mccain Talks About Her Boobs
Cristiano Ronaldo Disses Paris Hilton "um Louro Mudo Feio!"
Existince of Poor People A Surprise, Says Bush
Gay Bishop Was A Wrestling Pro
Gay Marriage Could Be Profitable
Gay Men Perceive Each Other As Homophobic
Gays Banned From Owning Pets In New York
George W Bush Slams Tony Blair
God Accepts Responsability for Hurricane Katrina
God Destroys Boise For Not Being Gay Enough
Gus Hiddink Heads for Gulag
Hillary Clinton Gets Night Job
Home Office To Deport Anyone with Iq Below 100
Horse gets swallowed by snake
Horse kicks Harrison Ford in stomach
Horse kicks Ralph Lauren in stomach
Horse wins owner $17m
Horses breaks riders skull in freak attack
Ican To Shut Down Email Services World Wide
JFK long-lost heir found
JFK memoirs reveal affair
JFK memoirs reveal illegitimate son
Kids leave robbery victim dead
Kids rob elderly, police open fire
Madonnas Former Home Destroyed By Jesus
Man breaks arm in horror fall
Man loses eye in fight
Martian Soil Fantastic For Growing Weed Says Nasa
Mccain - Iran Has Weapons of Mass Destruction
Mccain And Bush To Dance In Puppet Show
Mccain Says Unsure If Obama A Secret Hippopotamus
McDonald's Happy Meals In San Francisco To Include Gay Marriage License
Michael Jackson is hermaphrodite. Watch the video.
Microsoft's AntiSpyware Tool Removes Internet Explorer
NASA to use Space Shuttles to Kill Birds
nazi Toddlers Ruined My Birthday
Obama Captures Osama
Obama Is Anorexic Over-Exerciser;
Obama is gay. Watch the Proof.
Old Man Dies Inside Paris Hilton
One Hot White Chick Injured in Tsunami Disaster
Pamela Anderson Shouts, "i'm Gonna Remarry My One And Only True Love Tommy!"
Paris Hilton Charges For Pussy
Paris Hilton Infested With Cockroaches
Paris Hilton Initially Denies Having Inverted Nipples
Paris Hilton Is Going To Jail
Paris Hilton Lectures on Dickens And Dostoevsky
Paris Hilton To Operate New Atom Smasher
Paris Hilton Tosses Dwarf On The Street
Paris Hilton Wins Pulitzer Prize
Pepsi sues Coke for $892mn
Police open fire on elderly in Iowa
PopeWatch: Fox News Personally Confirms the Pope's Death
President Bush's iPod: The Complete Playlist
Prominent Male Hooker Forced To Step Down After Sex With Sleazy Evangelist
Raw footage of snake swallowing horse
Release Of The Nancy Pelosi Sex Dvd Causes Mass Erectile Dysfunction In Us
Right To Own Guns Upheld
Ronald Reagan Prime Suspect In Bank Robbery
Sarah Jessica Parker Arrested For Gross Negligee
Sarkozy Carla Bruni Sex Film Shocker At Windsor Castle
School Board Adopts Gay-Ass Uniform Policy
Shocking Video Shows Spongebob And Gay Sex!
Snake caught swallowing horse
Spongebob Denies Reports That Hes Gay
Stock Markets Close As Global Earth World Planet International Buys All Shares
Switzerland To Be Devoured By Black Hole
Teenage Girl obviously Having Affair With Bat
The Meat Wars: Jessica Simpson's Shirt Tees-Off Pam Anderson
Theodore Roosevelt Was A Gay Man
Tiger Woods Will Call Next Son Monkey
Ufos Sighted Over Uk
Unemployed To Be Used For Soup
White Male Workers Banned In Britain
Woman loses foot in shock attack
Woman loses nose after dog attack
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • From Russia, With Love . . . new Postcard spam spies on your PC
    Isn't it nice to have friends who send you postcards? The UAB Spam Data Mine is especially fortunate in that way. Beginning the evenin...
  • Happy New Year! Here's a Virus! (New Year's Postcard malware)
    I've been busy this week looking at the various defacements (see ComputerWorld , and ABC News ) and other cyber attacks (see yesterday...
  • ACH Spammer switches to Shortened URLs
    For many weeks now the spammers behind one particular malware family have been fighting a running battle to keep their malware-hosting domai...
  • Tempting Photo Attachments Lead to Fake AV
    One of today's largest malicious spam campaigns continued an occasional theme we've been seeing for a few weeks. A subject line, fo...
  • Indictments reveal $77 Million in Illegal Pill Sales
    Congratulations to the Daytona Beach FBI, US Attorney Robert O'Neill, and their colleagues at IRS and FDA. The Daytona Beach News report...
  • Most Dangerous Cities for Cyber Crime?
    Symantec Riskiest Cybercrime Cities Symantec released a study today in conjunction with Sperling's Best Places today. According to thei...
  • Morocco based "Team Evil" reroutes prominent Israeli websites
    After more than 10,000 websites being defaced in protest of Israeli actions in Gaza, Morrocco-based defacement team "Team Evil" ha...
  • Minipost: Google v. Pacific WebWorks
    I blogged recently about the "Google Jobs" scammers who were abusing Twitter, Blogspot, Google Reader, and spaces.live.com by crea...
  • New Year's Waledac Card
    We haven't seen a new version of Waledac since Independence Day (July 4, 2009), but it looks like its back! I'm on vacation today, s...
  • WIRED: November Jargon Watch & Forensics?
    One of my NASA buddies (hi, Lisa!) dropped by last week for coffee and to catch up on the world of information management. When I introduce...

Categories

  • Blogs
  • Calendar
  • china
  • Communities
  • computer security careers
  • conficker
  • cyberwar
  • digital certificates
  • Drivers
  • email
  • Excel 2007
  • facebook
  • fake av
  • Features
  • Firewall
  • Gadgets
  • gumblar
  • Hardware
  • Hotmail
  • IE7
  • Internet Explorer 7
  • koobface
  • law enforcement
  • malware
  • Microsoft
  • Outlook
  • pharmaceuticals
  • phishing
  • PowerPoint 2007
  • public policy
  • Ready Boost
  • ReadyBoost
  • Security
  • Sidebar
  • Software
  • spam
  • Tutorials
  • twitter
  • twitter malware
  • USB
  • Virtual PC
  • Vista
  • waledac
  • Wallpaper
  • Websites
  • Windows
  • Windows Live
  • Windows Vista
  • Word 2007
  • zbot

Blog Archive

  • ►  2013 (17)
    • ►  November (1)
    • ►  October (1)
    • ►  September (1)
    • ►  August (3)
    • ►  July (1)
    • ►  June (1)
    • ►  May (5)
    • ►  April (3)
    • ►  March (1)
  • ►  2012 (18)
    • ►  August (1)
    • ►  June (1)
    • ►  May (7)
    • ►  April (2)
    • ►  March (7)
  • ►  2011 (28)
    • ►  November (3)
    • ►  October (1)
    • ►  August (4)
    • ►  July (6)
    • ►  June (1)
    • ►  May (2)
    • ►  April (2)
    • ►  March (6)
    • ►  February (1)
    • ►  January (2)
  • ►  2010 (80)
    • ►  December (6)
    • ►  November (10)
    • ►  October (6)
    • ►  September (12)
    • ►  August (5)
    • ►  July (4)
    • ►  June (11)
    • ►  April (7)
    • ►  March (8)
    • ►  February (4)
    • ►  January (7)
  • ►  2009 (93)
    • ►  December (12)
    • ►  November (11)
    • ►  October (16)
    • ►  September (7)
    • ►  July (5)
    • ►  June (10)
    • ►  May (2)
    • ►  April (7)
    • ►  March (7)
    • ►  February (6)
    • ►  January (10)
  • ▼  2008 (109)
    • ►  December (7)
    • ►  November (17)
    • ►  October (12)
    • ►  September (10)
    • ►  August (23)
    • ▼  July (14)
      • FBI & Facebook: Storm Worm gets it all wrong!
      • To Understand the War on Terror: Read This
      • Vista Security Features
      • Top News in Spam = Old News
      • Two Spammers Doing Time and One That Got Away
      • Amero to Replace Dollar? Could Storm Worm Be Right?
      • News Headlines Still Out of Control
      • Russian Cybercrooks, CoreFlood, and the Amazing Jo...
      • 22 More Romanians meet The Long Arm of the Law
      • Nuwar Looks for News Readers?
      • Windows Mail & Calendar
      • Storm Worm Salutes Our Nation on the 4th!
      • 7-11 ATM Hackers (?) - More details
      • July Storm Worm gives us some Love
    • ►  June (3)
    • ►  May (8)
    • ►  April (6)
    • ►  March (2)
    • ►  February (3)
    • ►  January (4)
  • ►  2007 (37)
    • ►  December (3)
    • ►  November (9)
    • ►  October (3)
    • ►  September (2)
    • ►  August (5)
    • ►  July (5)
    • ►  April (2)
    • ►  March (2)
    • ►  February (2)
    • ►  January (4)
  • ►  2006 (5)
    • ►  December (2)
    • ►  October (3)
Powered by Blogger.

About Me

Unknown
View my complete profile