Three arrested for running “Mariposa” botnet

March 3, 2010

Spanish police have arrested three men allegedly responsible for the Mariposa botnet which controlled nearly 13 million infected computers.
The botnet was rendered inactive on December 23, 2009 following months of collaboration between security firms Panda Security and Defense Intelligence in co-operation with the FBI, Spain’s Guardia Civil and security experts around the world.
Personal [...]

Read the full article →

win32hlp and Internet Explorer issue

February 28, 2010

The Microsoft Security Response Center (MSRC)
Sunday, February 28, 2010
On Friday 2/26/2010, an issue was posted publicly that could allow an attacker to host a maliciously crafted web page and run arbitrary code if they could convince a user to visit the web page and then get them to press the F1 key in response to [...]

Read the full article →

Rogue-Security Essentials 2010

February 25, 2010

Rogue security products use false advertising, drop malware and often have a similar name or appearance to legitimate security software.
Scareware has already mimicked the Windows Security Center. This one mimics Microsoft Security Essentials and calls itself “Security Essentials 2010”.
Microsoft Malware Protection Center.
As we in the MMPC have always been quick to point out, Microsoft Security [...]

Read the full article →

Microsoft knocks out Waledac Botnet

February 25, 2010

Microsoft, a founding member of the Botnet Task Force, announced that a federal judge has granted a temporary restraining order cutting off 277 Internet domains believed to be run by criminals controlling a vast network of infected PCs.

This action has quickly and effectively cut off traffic to Waledac at the “.com” or domain registry level, [...]

Read the full article →

Virus Bulletin Poll-Nearly 20% still running Insecure IE 6

February 24, 2010

A poll by Virus Bulletin showed a large number of respondents are still running IE 6, even in the workplace.
In VB’s poll, 15% of respondents said they were running the browser at work, indicating that, for many organizations, upgrading is not a priority – whether that is for reasons of compatibility with legacy applications or [...]

Read the full article →

FTC Warns of Widespread Consumer Data Breaches on P2P

February 24, 2010

Press Release.

Widespread Data Breaches Uncovered by FTC Probe
The Federal Trade Commission has notified almost 100 organizations that personal information, including sensitive data about customers and/or employees, has been shared from the organizations’ computer networks and is available on peer-to-peer (P2P) file-sharing networks to any users of those networks, who could use it to commit identity [...]

Read the full article →

Adobe Download Manager 0-day vulnerabilities

February 19, 2010

Days after Adobe released a security update for Flash Player, researcher Aviv Raff disclosed he has discovered a vulnerability in Adobe’s Download Manager which can be exploited to remotely install malware on end users computers.
Even if you upgraded to the latest Flash version (10.0.45.2) and use an alternative PDF reader you are probably not safe [...]

Read the full article →

FTC Cracks Down on Con Artists Targeting Jobless Americans

February 18, 2010

Press Release.
Scams Prey on Victims of the Recession With Bogus Job, Money-Making Schemes

The Federal Trade Commission today announced a new crackdown on con artists who are preying on unemployed Americans with job-placement and work-at-home scams, promoting empty promises that they can help people get jobs in the federal government, as movie extras, or as mystery [...]

Read the full article →

Alureon Rootkit and MS10-015 Issues

February 18, 2010

Wednesday, February 17, 2010
The Microsoft Security Response Center (MSRC)

Our investigation has concluded that the reboot occurs because the system is infected with malware, specifically the Alureon rootkit. We were able to reach this conclusion after the comprehensive analysis of memory dumps obtained from multiple customer machines and extensive testing against third party applications and [...]

Read the full article →

Fake Antivirus adds “Support”

February 15, 2010

Rogue security programs usually pop up a screen informing users that their PC is infected with malware. The user, understandably alarmed by the nonstop pop-ups which suddenly appear on their frozen screen, will often click to make a purchase and download the “fake” software which claims it will remove the infection. In a nutshell that [...]

Read the full article →