SEARCH RESULTS
 
Showing 1-10 of 24 records
 
Expand article

Loads.cc's DDoS for Hire Service

The Article has images
2008-03-11 21:35:53 by HASH0x8b581c0 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads.cc . During the time of posting this, the malicious domain is starting to redirect to a very descriptive one, which basically says " given up on ddos-ing ", and a featured ad in between loads.cc's old interface is pitching the new service - contextual advertising consultations, as you can see in the attached screenshot. Apparently, a...
 
 
 
 
 
Expand article

Malware Serving Exploits Embedded Sites as Usual

The Article has images
2008-01-09 18:04:58 by HASH0x8957398 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads 8v8.biz/06014.html in between 8v8.biz/r.htm - real player unobfuscated, wheere all of these attempt to load 8v8.biz/v.exe - Worm.Win32.AutoRun.bkx; Win32/Cekar!generic Result: 27/31 (87.10 File size : 19501 bytes MD5 : 7b101f7baeae0ebab9ecc06fdb9542dc SHA1 : 36ffa50ce3873fb04c13c80421c205a7760f47ca The binary is using a default set of...
 
 
 
 
 
Expand article

Have Your Malware In a Timely Fashion

The Article has images
2007-12-15 08:35:11 by HASH0x89f6724 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads an IFRAME to fernando123.ws/forum/index.php (88.255.94.114) which is MPack hosting the actual binary at fernando123.ws/forum/load.php or fernando123.ws/forum/load.exe Detection rate : Result: 9/32 (28.13 File size: 43008 bytes MD5: 8ce2134060b284fa9826d8d7ca119f33 SHA1: 3074f95d6b54fa49079b20876efa0f4722e7fe7d As for the second...
 
 
 
 
 
Expand article

Serving Malware Through Advertising Networks

The Article has images
2008-02-18 10:58:53 by HASH0x8bfe2fc in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads winhex.org/tds/in.cgi?9 (85.255.120.194; the malware embedded attack againt the French government's Lybia site 195.93.218.25/kam/index.php xtraff.biz/ads2.htm loads todub.com/tod.php?username=kamilet (72.167.54.150 search-fantasy.info/go.php?u=fxlayer (208.109.178.115 netsearch.cc/go.php?u=fxlayer (208.109.90.122...
 
 
 
 
 
Expand article

Massive RealPlayer Exploit Embedded Attack

The Article has images
2008-01-07 18:58:52 by HASH0x89c7e1c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads c.uc8010.com/ip/Cip.aspx (61.188.39.218) which says " Hello ", furthermore, c.uc8010.com/0/w.js loads c.uc8010.com/1.htm ; count38.51yes.com/click.aspx?id=389925362&logo=1 and s106.cnzz.com/stat.php?id=742266&web id=742266 The internal structure is as follows c.uc8010.com/1.htm - attempts MDAC ActiveX code execution (CVE-2006-0003)...
 
 
 
 
 
Expand article

RBN's Fake Account Suspended Notices

The Article has images
2008-01-15 19:07:34 by HASH0x8b4a7ec in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads dev.aero4.cn/adpack/load.php Detection rate : 11/32 (34.38 File size : 6656 bytes MD5 : 5eb0ee32613d8a611b6dc848050f3871 SHA1 : 55c0448645a8ed2e14e6826fae25f8f9c868be30 It gets even more interesting as the downloader attempts to download the following 88.255.94.250/s2/200.exe 88.255.94.250/s2/m.exe 88.255.94.250/s2/d.exe...
 
 
 
 
 
Expand article

Brushing up on my math skills...

2006-07-21 04:38:00 by Jomni in Risk Management Quant
 
...loads of papers on Risk Management and Derivatives. But reading them is no simple feat as most of them are written by PhDs or PhD students. My lack of academic foundation in mathematics do get in the way, especially when I encounter a lot of greek symbols Finding like-minded individuals to discuss topics of interests and ask for advice also...
 
 
 
 
 
Expand article

Fatal wine waiters

2007-12-20 18:59:04 by Richard Clayton in Light Blue Touchpaper
 
...loads of money Well, this one hallwebhosting.com is a little different. I first came across it a few months back when it was clearly still under development, but it seems to have settled down now so that its worth looking at exactly what theyre doing The problem that such sites have is that they need to create lots of content really quickly,...
 
 
 
 
 
Expand article

Pushdo - Web Based Malware as Usual

The Article has images
2007-12-19 18:01:44 by HASH0x89b80bc in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...loads from infecting users located in a particular country, or provides the ability to target a specfic country or countries with a specific payload This is an excerpt from a previous post on " Botnet Communication Platforms " including various graphs courtesy of botnet masters circa 2004/2005 The possiblities with PHP and MySQL in...