SEARCH RESULTS
 
Showing 1-10 of 14 records
 
Expand article

Pinch Variant Embedded Within RussianNews.ru

The Article has images
2007-12-23 21:01:52 by HASH0x89b2224 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch variant thought an MDAC ActiveX code execution exploit - CVE-2006-0003, the type of virtual Keep it Simple Stupid strategy of using outdated vulnerabilities I discussed before. Deobfuscation leads us to : russiannews.ru/arabic/data/news/upload/exp/exe.php Trojan-PSW.Win32.LdPinch.dzr File Size : 22016 bytes MD5 :...
 
 
 
 
 
Expand article

Pinch Vulnerable to Remotely Exploitable Flaw

The Article has images
2008-08-07 10:22:01 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch crimeware that's been around VIP underground forums since June, 2007, is starting to receive the necessary attention from script kiddies catching up with the possibility of hijacking someone's malware campaign due to misconfigured command and control servers With the exploit now in the wild, retro cybercriminals still taking advantege...
 
 
 
 
 
Expand article

Russia's FSB vs Cybercrime

The Article has images
2007-12-20 15:44:16 by HASH0x89b8758 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch-ED" the authors of the DIY malware Pinch . A populist move mainly because the Russian Business Network is still 100% fully operational, the Storm Worm botnet was originally launched and is currently controlled by Russian folks, and the lack of any kind of structured response on who was behind Estonia's DDoS attack. Pinch-ing the authors...
 
 
 
 
 
Expand article

E-crime and Socioeconomic Factors

The Article has images
2008-01-21 07:49:29 by HASH0x8b5217c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch for instance and the recent arrest of the "coders". New and improved versions of Pinch are making their rounds online, but how is this possible since the people behind it are no longer able to update it? To achieve immortality for Pinch, they've released it as open source tool, namely anyone can use its successful foundation for any...
 
 
 
 
 
Expand article

Summarizing August's Threatscape

The Article has images
2008-09-10 06:57:32 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch Vulnerable to Remotely Exploitable Flaw With Zeus vulnerable to a remotely exploitable flaw allowing cybercriminals to hijack other cybercriminal's Zeus botnet, private exploits targeting the still rather popular at least in respect to usefulness Pinch malware are leaking, allowing everyone including security researchers to take a peek...
 
 
 
 
 
Expand article

Modified Zeus Crimeware Kit Comes With Built-in MP3 Player

The Article has images
2008-09-29 17:55:03 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch DIY malware builder, that's been around for over 4 years. With the populist arrest of its authors in 2007 , cybercriminals are still innovating on the foundations offered by Pinch, and thanks to its publicly obtainable source code . It's also worth pointing out that these two Zeus and Pinch modifications are courtesy of a single...
 
 
 
 
 
Expand article

The Moo Security through Sacredness

The Article has images
2007-08-29 04:30:13 by RaviC in Musings on Information Security
...pinch due to IT budget cut. A good way to make security function "secure" is to make it sacred. There are standards like ISO27001, COBIT which are well respected and considered sacred in the security domain. By conformance of security function to such standards we can not only create a perception of "sacredness" for the security program but...
 
 
 
 
 
Expand article

Embedding Malicious IFRAMEs Through Stolen FTP Accounts

The Article has images
2008-03-03 10:14:01 by HASH0x8b0b9bc in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...Pinch in the summer of 2007 despite that the tool's been around since 2004/2005, and exposing this malicious FTP account checker and IFRAMEs embedder in February, 2008, when it hasn't been updated since February, 2007, greatly contributes to the development of a twisted situational awareness. Realizing it or not, with the time, security...
 
 
 
 
 
Expand article

HACKED BY THE RBN!

The Article has images
2008-04-01 15:52:09 by HASH0x8b24a94 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...pinch.exe 58.65.239.42/jdk7dx/ ldig0031242.exe 58.65.239.42/jdk7dx/ 64.exe 58.65.239.42/jdk7dx/ system.exe 58.65.239.42/jdk7dx/ bhos.exe 58.65.239.42/jdk7dx/ bho.exe Once you've executed them, make sure you initiate an E-banking transaction right way. Do not worry, you don't to give us your banking details for the donation, we already have...