Twitter Virus Redirecting Users To Malware Site

Written by on January 20, 2011 in Security, Twitter - No comments

twitter virus

 

 

Twitter VirusAt 8:45 a.m EST today, this Twitter search shows thousands of Twitter messages continuing to spread the worm.

 

According to malware researchers,  tracking the threat, the worm’s redirection chain pushes users to a Web page serving up the “Security Shield” Rogue AV.   The page is using obfuscation techniques that include an implementation of RSA cryptography in JavaScript to obfuscate the page code.

Kaspersky Lab malware researcher Nicolas Brulez  said the original “goo.gl” links in the Twitter messages are redirecting users to different domains with a “m28sx.html” page.  That page then redirects to a static domain with a Ukrainian top level address.

As if it was not enough, this domain redirects the user to another IP address which has been linked in the past to fake anti-virus distributions.  ”This IP address will then do the final redirection job, which leads to the actual Fake AV site,” Brulez explained.

Once a user’s browser session is redirected to the malicious site, a warning message claims the computer is running suspicious applications and the user is encouraged to run a scan.  As usual, the result is that the machine is infected with malicious threats and the scam is to trick the user into downloading a fake disinfection tool.


 

CL Phone Safety Site is A Fake : clphonesafety.org

Written by on January 5, 2011 in Security - 62 Comments

CL Phone Safe Website A Fake

 

Be wary of this website http://clphonesafety.org/ , the site is fake , and the losers running the website are trying to not only collect your personal data , but infect you with a virus. When you respond to the ad ad on Craigslist , you will be sent an email claiming that they want to "verify" identity to make sure you say who you are. Of course , the website is a cloned website gone horribly wrong. None of the links on the website work at all. It appears to be a screen shot of the actual Craigslist website.

CL PhoneSafe Website Screenshot

 

 

 

Of course you know me , I did my research on the little buggers , and of course the information being saved on the Whois. directory was completely bogus. Everything from the email address used , to the ip addresses that where used where fake.

 

DO NOT REPLY to anyone  that claims they have to verify your phone number by way of http://clphonesafety.org/

This is the fake email address they sent me an email from, however it appears they are using variations of the below email address.

ewingguys2@gmail.com

ewingguys22@gmail.com

 

Craigslist Does implement a phone verification process ( used when you create an account ) , but it is done on the craigslist website , and not an external website

 

Download Lavasoft Ad-Aware Pro Free For The Next 24 Hours

Written by on December 27, 2010 in Free Stuff, Security - No comments

ad-aware-anti-virus-anti-spyware-pro-software-lavasoft

Want to recieve a free copy of Lavasofts Ad-Aware Pro ? Cnet is running a special promotion that is good only for today , so if you miss , well I can't help you lol.  Click here to download your free copy of Ad-Aware Pro. All you have to do is click here  and signup to the Cnet Newsletter . Once you signup , you will recieve a link in your email to confirm your subscription , and you will also recive your products serial number . Learn more about this great software by visiting there homepage http://www.lavasoft.com/ . If you can't download it today however dont fret – theyy offer a free version of the progrm ( minus the pro features though) .

 

Happy Downloading !!!

System Mechanic 10 on Sale For 50% Off !

Written by on November 9, 2010 in Security - 3 Comments

System Mechanic 10

 

So, me being the awesome kick ass guy that I am , I am going to let you in on a little secret. iolo is practically giving away the latest edition of System Mechanic 10 at half the price to its affiliates , and i am extending it out to all of you :).

 

 

To get System mechanic At This Discounted Price Click this link

Get the new System Mechanic 10 for only $24.95 [normally $49.95]. Save 50%! Coupon code: TEN

 

Iolo System Mechanic 10

 

This offer is good through December 31st , after that the price will go back to it's original 49.95.

 

This program is awesome because it does all the maintenance work for you. You just set it up to do what you need , and then the magic elves that live in your computer take care of the rest . Read on to learn more about this great software.

 

Increase your PC's memory without buying more RAM. Fix memory leaks and defragment RAM with Memory Mechanic®

 

Ever notice how your PC seems to run out of breath and programs slow down as the day progresses?

 

The Symptoms: When you first start up your PC it's snappy and responsive, but after even just a few minutes of use it begins to bog down and gets progressively slower throughout the day. Your resource-thirsty programs or games start to sputter and stall. In severe cases, you may even receive warnings and error messages from Windows about low memory.

 

The Problem: Computer experts agree that while the CPU may be considered a computer's brain, RAM is definitely its heart and lungs. Your PC needs memory to keep all of your programs functioning smoothly and speedilyżand when it's compromised, your whole system begins to falter.

When your computer's memory is lowered due to fragmentation or "memory leaks," everything suffersżand this is why iolo Labs has pinpointed available RAM decline as one of the 9 root causes of PC slowdown.

 

The Fix: While some believe that the best way to remedy low RAM is to buy and install more of it as your available RAM gets corrupted, System Mechanic 10's uniquely effective Memory Mechanic® tool gets to the root of the problem by tackling the basic corruption issues that cause RAM to decline: first, it locates and reclaims all improperly reserved and inadvertently leaked memory from programs that are no longer using it, and then it reassembles the memory into streamlined and contiguous order for maximum access and processing efficiency.

 

How it works: The two critical problems that reduce your available RAM are 1) memory fragmentation, which occurs simply with regular use, and 2) memory leaks, which occur either when programs forget to release the memory they had reserved for themselves as they are closed, or when programs keep reserving more and more new memory for the same function.

iolo has known for years that within just a few minutes of use, system memory (RAM) can become just as fragmented as a hard drive that has undergone weeks or months of abuse. Just as a fragmented drive causes severe performance decline and even system instability, disjointed memory can have the same effect on your PC's overall speed and functioning.

Worse, fragmentation of memory isn't the only thing users must deal with as programs are started, used, closed, and restarted on a busy PC. This type of normal daily activity exposes systems to what software technicians call "memory leaks", which occur when a program exclusively reserves memory for itself, and then forgets to release it after its task is finished. Memory leaks can confuse the operating system, which is left in a state where it can't release the previously reserved resources, even though the original program no longer needs them.

 

Memory Mechanic shows you a real-time picture of the memory
defragmentation process as it occurs.

 

It is common humor among software engineers that "all programs have memory leaks", but that "they are so small the user never notices". The flaw in this logic is that while perhaps one program's memory leak may go unnoticed, dozens or hundreds of programs all operating simultaneously can represent a truly devastating effect on performance as they quickly drain the PC's precious resources.

One of the first and most effective tools of its kind, System Mechanic's Memory Mechanic® is designed to not only reassemble your RAM into neat, contiguous order for significant performance gains, but also hunt down and release all of the resources that are being held captive by memory leaks within sloppy programs. As any computer expert will agree, more memory means faster performance, and Memory Mechanic delivers both.

In the latest version of System Mechanic, Memory Mechanic has been reengineered to work up to 85% faster, and to find and release up to 25% more memory leaks, resulting in greater performance benefits than ever before. In addition, iolo Labs has discovered a new and improved technical approach to memory defragmentation that completely eliminates the short pause that users of prior versions experienced while the system rebuilt its memory allocation after the operation was complete.

 

After the defragmentation process is complete, the amount of memory
recovered is shown, and your PC feels immediately more responsive.

 

System Mechanic 10 – New Features and Enhancements
 

Smarter Deeper Faster
Only System Mechanic is powered by Tune-up Definitionsż, intelligent research updates that are automatically incorporated into the product every week. Only System Mechanic resolves all 9 root causes of PC slowdowns that have been identified and documented through iolo Labs research.

Today's PC users demand performanceżand System Mechanic 10 delivers, with its comprehensive set of significant speed improvements throughout.

»Learn More

 

New Tools and Features

 

Program Acceleratorż
Uses an all new patent-pending calibration technology to speed up program performance by intelligently realigning programs with their dependent files.
   
CRUDD Removerż
Clearly shows you which programs have duplicate functions so that you can make an intelligent choice about which programs you want to keep and which ones you want to remove.
   
Internet Connection Repairż
Detects bad connections and uses a battery of proprietary technology to repair and reconnect your computer, and ensures that the connection is as clean, fast, and reliable as possible.
   
Whole Home Licensingż Program
Allows families to use just one product license to install System Mechanic on all the PCs in a single-family household at no extra cost.

 

Enhanced Features

 

Tune-up Definitionsż
The latest Tune-up Definitions for System Mechanic 10 are packed with even more essential data that continues to improve and update the product's effectiveness in 5 vital areas.
   
DriveAcceleratorż
The first and only disk defragmenting tool re-engineered to work optimally with both Windows 7 and new Program Accelerator calibration technology.
   
Incinerator® for Recycle Bin
System Mechanic's powerful, military-grade Incinerator® now works with Windows Recycle Bin to securely wipe your discarded data.
   
Memory Mechanicż
This innovative memory-reclaiming tool has been re-engineered to work up to 85% faster and eliminates up to 25% more memory leaks.
   
ActiveCare®
Patent-pending ActiveCare® technology adds more automated repair tasks, enabling System Mechanic to monitor and automatically fix even more problems than before.
   
PowerToolsż
System Mechanic's unique all-in-one tune-up tool now comes with all-new detection, repair, and optimization functions.

 

The New York Times Loves System Mechanic!

 

In case you missed it, check out a glowing review of System Mechanic from the New York Times.

 

"

I saw some very noticeable improvements after running System Mechanic. For instance, boot-up took 1 minute, 57 seconds before I ran System Mechanic, and only 58 seconds after. A restart was 2 minutes, 19 seconds before, and 1 minute 40 seconds after. Time to load a graphicsżintensive Web site like CNET was 3.8 seconds before and 2.1 seconds after. Firefox launched in 9 seconds before and 6 seconds after.

The software also enabled the laptop to more efficiently use its CPU while displaying video. For instance, CPU usage maxed out at 93 percent when launching Hulu.com before running System Mechanic but only 58 percent after. More efficient CPU usage will enable you to more smoothly run multiple applications."

 

iolo also received an outstanding review on System Mechanic 10 from PC World.

 

"

I tested Iolo System Mechanic 10's ability to whip a PC back into shape by performing three testsżrunning the Geekbench system performance tool, measuring boot times, and transferring a 1.1GB folder of mixed media to external storageżbefore and after running the software to compare the computer's potency. Each test was run three times and averaged. Before AVG PC Tuneup 2011 scrubbed the system, the 2-GHz Intel Core i7 X990 Style-Note notebook with 4GB of RAM, and an 80GB Intel SSD drive achieved a 5,903 Geekbench score, booted in 50.3 seconds, and transferred the 1.1GB folder in 40.5 seconds.

After using tested Iolo System Mechanic 10, the system saw the most improved performance of all the tune-up utilities tested: The GeekBench score rose to 6033 (better than AVG PC Tuneup 2011's 6009, Comodo System Cleaner's 5,991, and PC Tools Performance Toolkit 2011's 5969); the boot time decreased to a just 42 seconds (swifter than AVG PC Tuneup 2011's 43.1, PC Tools Performance Toolkit 2011's 46 seconds, and Comodo System Cleaner's 48.7 seconds). The file transfer speed dropped to 40.2 seconds (a few seconds faster than AVG PC Tuneup 2011's 43.3 second, and Comodo System Cleaner's 44.2 seconds, but slower than PC Tools Performance Toolkit 2011's 39.3 seconds).

As with AVG PC Tuneup 2011, the overall system performance was incredibly fast and snappyżwindows and menus opened in a blink."


 


Why disabling right click is pointless

Written by on June 5, 2010 in Featured, Security - No comments

6a00b8ea071cde1bc000c22526e35b604a-320pi

So you just created a masterpiece  and want to share it with the world on your Website.  Super . So you upload it and then realize that someone can take this image off of your site . What do you do ???

"Hmmm , maybe if there was a way to disable saving images from my page , I would be alright?" That sounds like a good idea, but it's really just a waste of time.

After countless hour of searching Google you finally come across the coding to disable the right click on your page . yay Sweet Baby Jesus , You Did It !!! You have won the battle in protecting your writing art whatever it is you are trying to not have people copy from your site. And then….. silence looms in… Have you thought of the ramifications of disabling the right click for your page ? There are alot of useful features there ( it is quicker and easier to access than your menu bar). Disabling the right click will not stop someone from getting what it is they want. thiefThe average person surfing the net has enough know how of how search engines work to figure out on there own how to get what it is that they want from your page. It may deter some , but not all. Stealing that image you worked so hard on is as easy as going to your file menu , and clicking on view source. That's it . It is also unprofesional : Think about it for a second . Would you want to buy something from a site that constantly reminds you that it is under copyright ? Solutions ?

Still not convinced and want to put the code into your site anyway ? ( sheesh) Here it is .

<script language="JavaScript">
// distributed by http://christianmartell.com <!– var popup="Sorry, right-click
is disabled.nnThis Site Copyright ©2010"; function noway(go) { if
(document.all) { if (event.button == 2) { alert(popup); return false; } } if (document.layers)
{ if (go.which == 3) { alert(popup); return false; } } } if (document.layers)
{ document.captureEvents(Event.MOUSEDOWN); } document.onmousedown=noway; // –>
</script>

Twitter Hacked … Again ?

Written by on May 10, 2010 in Security, Twitter - 1 Comment

 

Twitter Hacked 

 

Today sometime in the early afternoon ( eastern time zone ) Twitter was hacked ( as of now we are unsure of whether it was an individual or if it was a hacker group. According to the  Twitter status page

 

Follow bug discovered, remedied. 22 minutes ago

We identified and resolved a bug that permitted a user to “force” other users to follow them. We’re now working to rollback all abuse of the bug that took place. Follower/following numbers are currently at 0; we’re aware and this too should shortly be resolved."


Is twitter's security to lax ? What type of measures should be put in place to ensure that something like this won't happen on a more freqwuest basis ? Well maybe not ever again ( as we know technology and security needs change from day to day ) . 

 

In the meantime , here are some tips to keep you safe.

  • Do not use implement the "Add location" feature ( it gives away your gps coordinates , and as such is sensitive information)

 

  • If you are posting content on your twitter page that you are tying to keep private – don't.  There are many prying eyes out there. Just becasue your account works flawlessly , does not mean that you are not being monitored ( better safe than sorry )

 

  • If you can , avoid posting times locations of where you may or may not be. 

 

Of course this is not an inclusive list , but it should serve more as a checklist for you to ensure that  while  you are on twitter ( in fact this could apply for any social network)  your sensitive information is safer.

 

Have any more suggestions ? Ideas ? Lets here them 

Security Flaws in Adobe Acrobat

Written by on March 10, 2010 in Security - No comments

Attackers are making the rounds and exploiting a critical security flaw in Adobe Reader 9 and Acrobat 9. 

 Earlier versions of the PDF related software are also affected by the critical security flaw, which could cause the applications to crash and potentially let an attacker gain control of a person's computer, Adobe Systems warned Thursday. 

Reports also surfaced that attackers have developed an exploit and are taking advantage of the flaw, the company said.

Adobe has yet to develop an update to address the vulnerability but noted it expects to have one ready very soon. After that, the company expects to launch updates for the earlier versions of the software going back to Adobe Reader 7 and Acrobat 7. 

Until then, Adobe advises, people should update their virus definitions and exercise caution when opening documents from unknown sources.

Security company McAfee noted in a blog that the current attacks appear to be targeted ones but that it expects new variants of the exploit to make the rounds as more information becomes public.

In its posting, McAfee said that malicious PDF documents began to surface at the start of the year, exploiting a vulnerability in Adobe Reader versions 8 and 9. The attackers can then take advantage of a bug in Reader to overwrite memory at gain control of executing code. After that, attackers can install a Trojan horse and from there add a proverbial backdoor to a person's computer to remotely control and monitor the infected system.

Symantec, meanwhile, reports seeing the exploit used against only a few government agencies and large corporations, and within those organizations, only a few people are targeted, said Kevin Haley, a Symantec Security Response director.

"We've seen it used in only a few small places, so it tells us it's a targeted attack and someone is not trying to use it in a widespread way," Haley said, noting fewer than 100 people have been affected since it noticed the attacks on February 12.

But he added it seems likely other attackers may try to exploit the Adobe vulnerabilities and that the range of exploits may grow beyond the malware that Symantec calls Trojan.Pidief.E.

In its blog on Trojan.Pidief.E, Symantec advices users to consider disabling JavaScript in Adobe Reader and has provided instructions in a blog on a different issue.

LATEST TWEETS

ABOUT ME

I am a Senior Web \ Mobile Developer residing in sunny Orlando Fl. I love developing awesome mobile apps, fresh web designs, playing my bass guitar and watching Robot Chicken ( Adult Swim rocks lol) .Uber Twitter addict, and leopard gecko owner. -Christian Martell