SEARCH RESULTS
 
Showing 1-10 of 21 records
 
Expand article

A Portfolio of Fake Video Codecs

The Article has images
2008-03-19 17:27:56 by HASH0x8b5b564 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs hosting the same Zlob variant on each and every of the domains, thereby acting as a great example of what malicious economies of scale means? But of course. As I've pointed out in a previous post, on the tactical warfare front the output of a malicious IFRAME campaign is often neglected from the perspective of lacking the two/three...
 
 
 
 
 
Expand article

Holy Media Codecs, Batman!

The Article has images
2008-08-27 10:10:53 by Christopher Boyd in SpywareGuide Greynets Blog
...codecs (which usually do all sorts of horrible things to a computer). Let's pull one of these sites apart as an example of how the scam fits together Here's a typical site pushing what they claim to be The Dark Knight Click to Enlarge Dijgg(dot)com, an obvious Digg.com knockoff apparently hosting a large streaming window - the movie...
 
 
 
 
 
Expand article

Blackhat SEO Redirects to Malware and Rogue Software

The Article has images
2008-06-05 07:59:47 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs (Zlob malware variants) and fake security software phoning back to UkrTeleGroup Ltd's network - could it get even more interesting? Of course, as the current state of Zlob malware serving tactics can be seperated in two distinct groups, those abusing the "sort of" zero day Flash exploit , as the currently active SQL injection attacks...
 
 
 
 
 
Expand article

Fake Celebrity Video Sites Serving Malware

The Article has images
2008-06-20 06:58:44 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs, it's about time we spill some coffee on several campaigns in order to get a better understanding of the way the campaigns function These campaigns are also starting to get so sophisticated, that analyzing a single one will expose another massive SQL injection, reveal several blackhat SEO domain farms, let you obtain fresh Zlob...
 
 
 
 
 
Expand article

Fake Porn Sites Serving Malware - Part Two

The Article has images
2008-07-08 03:24:00 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs and even more actionable intelligence into the nature of their practices, and which are the ISPs proving them with hosting services for several consecutive years The main redirector in this campaign popular-adult.com is also responding to basic-adult .com business-adult .com center-adult .com comp-adult .com compadult .com...
 
 
 
 
 
Expand article

Lazy Summer Days at UkrTeleGroup Ltd

The Article has images
2008-07-22 07:12:02 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs served, always represent a decent sample of malicious activities to analyze UkrTeleGroup Ltd ( 85.255.112.0-85.255.127.255 UkrTeleGroup UkrTeleGroup Ltd. 27595 ASN ATRIVO ), a personal favorite due to its historical connection with the Russian Business Network, and hosting provider for a countless of number of injected and malware...
 
 
 
 
 
Expand article

Fake Porn Sites Serving Malware

The Article has images
2008-06-25 12:16:20 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs. Moreover, once set up, the malicious infrastructure starts attracting now just generic search traffic, but also traffic coming from affiliates with whom revenue is shared on the basis of the number of people that downloaded the codec In this campaign, the malicious doorway that expands the entire ecosystem is located at search-...
 
 
 
 
 
Expand article

Summarizing June's Threatscape

The Article has images
2008-07-01 07:05:01 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...codecs that the end user should download if they are to view the non existent adult content at the sites. Where's the OSINT mean? It's in the fact that the codecs and the fake security software phone back to UkrTeleGroup Ltd's network 04. Using Market Forces to Disrupt Botnets - With the current oversupply of malware infected hosts,...
 
 
 
 
 
Expand article

Building My Windows Vista Media Center (VMC) - Part 3 - MyMovies2

The Article has images
2007-11-02 23:52:49 by jrjones in Jeff Jones Security Blog
...codecs. Note, that I use WMV because it facilitates streaming these movies to a Media Center Extender. This process can be automated using DVRMSToolbox from www.thegreenbutton.com (or similar tools Create a folder and move the transcoded file over to the folder Use the Collection Management application to add the "online" movie to your...