<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Enigma software, have they been spoofed</title>
	<atom:link href="http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/feed/" rel="self" type="application/rss+xml" />
	<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/</link>
	<description>Consumer Security on the web, information to assist you in practicing safe computing</description>
	<lastBuildDate>Wed, 02 May 2012 01:16:38 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>By: certifiedbug</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-30936</link>
		<dc:creator>certifiedbug</dc:creator>
		<pubDate>Tue, 12 Aug 2008 01:46:53 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-30936</guid>
		<description>Hello bonzo,

I tested the download with two different AV&#039;s, niether alerted.

What do you mean by &quot;our AV firewall&quot; ?    :)
Search on W32.JAKUZ  at Kaspersky.
&lt;blockquote&gt;Not found
Phrase to find: &quot;W32.JAKUZ&quot;
Found: 0&lt;/blockquote&gt;</description>
		<content:encoded><![CDATA[<p>Hello bonzo,</p>
<p>I tested the download with two different AV&#8217;s, niether alerted.</p>
<p>What do you mean by &#8220;our AV firewall&#8221; ?    <img src='http://certifiedbug.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
Search on W32.JAKUZ  at Kaspersky.</p>
<blockquote><p>Not found<br />
Phrase to find: &#8220;W32.JAKUZ&#8221;<br />
Found: 0</p></blockquote>
]]></content:encoded>
	</item>
	<item>
		<title>By: bonzo</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-30923</link>
		<dc:creator>bonzo</dc:creator>
		<pubDate>Mon, 11 Aug 2008 21:29:53 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-30923</guid>
		<description>While looking for a cure for XP Antivirus 2008 I found &lt;em&gt;www&lt;/em&gt;.wiki-security.com. Except for no search function, it&#039;s a pretty legitimate looking AV site. The weird thing is that every page has a download link for SpyHunter. It&#039;s like some sort of covert ad for SpyHunter. The weirder thing is that when I clicked on a link to download the &quot;free&quot; software it&#039;s blocked by our AV firewall tagging it as W32.JAKUZ, a known keylogger (Kaspersky).</description>
		<content:encoded><![CDATA[<p>While looking for a cure for XP Antivirus 2008 I found <em>www</em>.wiki-security.com. Except for no search function, it&#8217;s a pretty legitimate looking AV site. The weird thing is that every page has a download link for SpyHunter. It&#8217;s like some sort of covert ad for SpyHunter. The weirder thing is that when I clicked on a link to download the &#8220;free&#8221; software it&#8217;s blocked by our AV firewall tagging it as W32.JAKUZ, a known keylogger (Kaspersky).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ShadowPuterDude</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27409</link>
		<dc:creator>ShadowPuterDude</dc:creator>
		<pubDate>Fri, 23 May 2008 01:47:55 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27409</guid>
		<description>Correcting my miss-typed email addy: spd@malwareteks.com</description>
		<content:encoded><![CDATA[<p>Correcting my miss-typed email addy: <a href="mailto:spd@malwareteks.com">spd@malwareteks.com</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ShadowPuterDude</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27405</link>
		<dc:creator>ShadowPuterDude</dc:creator>
		<pubDate>Fri, 23 May 2008 00:33:04 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27405</guid>
		<description>Alvin,
You can contact me at  spd@malwareks.com, and I&#039;ll give you the information I have.

If you use the vulnerable code on other pages, you&#039;ll will want to review your code, and notify the author of the CMS, you use, of the code injection vulnerability.</description>
		<content:encoded><![CDATA[<p>Alvin,<br />
You can contact me at  <a href="mailto:spd@malwareks.com">spd@malwareks.com</a>, and I&#8217;ll give you the information I have.</p>
<p>If you use the vulnerable code on other pages, you&#8217;ll will want to review your code, and notify the author of the CMS, you use, of the code injection vulnerability.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alvin Estevez</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27404</link>
		<dc:creator>Alvin Estevez</dc:creator>
		<pubDate>Thu, 22 May 2008 23:53:58 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27404</guid>
		<description>ShadowPuterDude,

&quot;Some person or persons have taken advantage of a vulnerability in your software and exploited it.&quot;

It was not my &quot;Software&quot; that was exploited, it was simply the page or pages to be exact.

Alvin</description>
		<content:encoded><![CDATA[<p>ShadowPuterDude,</p>
<p>&#8220;Some person or persons have taken advantage of a vulnerability in your software and exploited it.&#8221;</p>
<p>It was not my &#8220;Software&#8221; that was exploited, it was simply the page or pages to be exact.</p>
<p>Alvin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alvin Estevez</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27403</link>
		<dc:creator>Alvin Estevez</dc:creator>
		<pubDate>Thu, 22 May 2008 23:37:05 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27403</guid>
		<description>ShadowPuterDude,

Do not post it here.. But what 4 other pages are exposed? and How can we communicate privately to discuss the particulars?

Thanks,

Alvin</description>
		<content:encoded><![CDATA[<p>ShadowPuterDude,</p>
<p>Do not post it here.. But what 4 other pages are exposed? and How can we communicate privately to discuss the particulars?</p>
<p>Thanks,</p>
<p>Alvin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ShadowPuterDude</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27401</link>
		<dc:creator>ShadowPuterDude</dc:creator>
		<pubDate>Thu, 22 May 2008 23:16:45 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27401</guid>
		<description>Alvin,

I am quite familiar with Content Management Systems and dynamically generated web pages.

Some person or persons have taken advantage of a vulnerability in your software and exploited it.  You have since corrected the vulnerability to prevent code injection.

That doesn&#039;t change the fact that some one from your company falsely accused certifiedbug of posting fake images and spreading false rumors.  Those pages did exist, with the content displayed; as posted in the article.  I&#039;ve seen them, 4 pages, including spyhunter_more_info.php.

Be thankful that the malicious redirect,was ineffective.  I&#039;ve been to the redirect, to investigate.  I won&#039;t discuss the particulars of the attempted exploit in an open discussion that anyone, including the perpetrators, can view.</description>
		<content:encoded><![CDATA[<p>Alvin,</p>
<p>I am quite familiar with Content Management Systems and dynamically generated web pages.</p>
<p>Some person or persons have taken advantage of a vulnerability in your software and exploited it.  You have since corrected the vulnerability to prevent code injection.</p>
<p>That doesn&#8217;t change the fact that some one from your company falsely accused certifiedbug of posting fake images and spreading false rumors.  Those pages did exist, with the content displayed; as posted in the article.  I&#8217;ve seen them, 4 pages, including spyhunter_more_info.php.</p>
<p>Be thankful that the malicious redirect,was ineffective.  I&#8217;ve been to the redirect, to investigate.  I won&#8217;t discuss the particulars of the attempted exploit in an open discussion that anyone, including the perpetrators, can view.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paperghost</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27397</link>
		<dc:creator>Paperghost</dc:creator>
		<pubDate>Thu, 22 May 2008 22:59:49 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27397</guid>
		<description>Email me at Paperghost@vitalsecurity.org is the quickest way. Its late here, but I will wait up for your message :)</description>
		<content:encoded><![CDATA[<p>Email me at <a href="mailto:Paperghost@vitalsecurity.org">Paperghost@vitalsecurity.org</a> is the quickest way. Its late here, but I will wait up for your message <img src='http://certifiedbug.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alvin Estevez</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27395</link>
		<dc:creator>Alvin Estevez</dc:creator>
		<pubDate>Thu, 22 May 2008 22:44:28 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27395</guid>
		<description>Paperghost,

Is there a way for us to speak to you in private?

Alvin</description>
		<content:encoded><![CDATA[<p>Paperghost,</p>
<p>Is there a way for us to speak to you in private?</p>
<p>Alvin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alvin Estevez</title>
		<link>http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/comment-page-1/#comment-27394</link>
		<dc:creator>Alvin Estevez</dc:creator>
		<pubDate>Thu, 22 May 2008 22:40:31 +0000</pubDate>
		<guid isPermaLink="false">http://certifiedbug.com/blog/2008/05/21/enigmasoftware-payday-loan/#comment-27394</guid>
		<description>PaperGhost,

I wanted to speak to you on the Anti-Spyware Coalition consortium meeting last January of this year. 

 I was sitting in the audience and enjoyed some of the work you do with the young hackers. 

I am willing to work with Tashi to find those spammers.

My only issue is, the IP can be bogus, what if they are using proxies or compromised computers? But at least is a starting point....

Alvin</description>
		<content:encoded><![CDATA[<p>PaperGhost,</p>
<p>I wanted to speak to you on the Anti-Spyware Coalition consortium meeting last January of this year. </p>
<p> I was sitting in the audience and enjoyed some of the work you do with the young hackers. </p>
<p>I am willing to work with Tashi to find those spammers.</p>
<p>My only issue is, the IP can be bogus, what if they are using proxies or compromised computers? But at least is a starting point&#8230;.</p>
<p>Alvin</p>
]]></content:encoded>
	</item>
</channel>
</rss>

