Pharmaceuticals

“AOL Administration Center” spam comes from a spoofed email address this is a classic example of Canadian Pharmacy spam.

Full text of the bogus email, the # in the subject line changes.

From: “AOL Administration Center (R)”
To:
Subject: AOL Administration Center Notification #73916

Hi,
You have 1 notification (#73916) from AOL Administration Center
Please follow the instructions to continue.
Thanks,
The AOL Mail Team

Click here to opt out of receiving future promotional e-mail messages from AOL or go to AOL Keyword:
Email Preferences and unsubscribe. This screen name cannot respond to replies.

Click here for other Important Information about Commercial E-mail from AOL or visit http://about.aol.com/email_information.
AOL Email, PO Box 65627, Sterling, VA 20165-8805.

——————————————
“UNIFORM TRAFFIC TICKET” spam has been around awhile and continues to do the rounds. The email has an attached file which contains a malicious Trojan horse.
http://garwarner.blogspot.com/2011/08/new-york-city-uniform-traffic-ticket.html

Full text of the bogus email, the ID # in the subject line changes.

Date: Wed, 03 Aug 2011 12:42:23 +0530
From: “N.Y. State Department of Motor Vehicles”
To:
Subject: UNIFORM TRAFFIC TICKET (ID:89254305)

New York State Department of Motor Vehicles

UNIFORM TRAFFIC TICKET (ID:50385056),

POLICE AGENCY
NEW YORK STATE POLICE
Local Police Code 5278

THE PERSON DESCRIBED ABOVE IS CHARGED AS FOLLOWS

Time: 7:25 AM
Date of Offense: 10/10/2011
IN VIOLATION OF NYS V AND T LAW

9690 Description of Violation
SPEED OVER 55 ZONE
TO PLEAD, PRINT OUT THE ENCLOSED TICKET AND SEND IT TO TOWN COURT, CHATAM HALL., PO BOX 117

{ 0 comments }

Joint effort brings down Rustock Botnet

by certifiedbug on March 17, 2011

in Microsoft

Microsoft On The Issues
17 Mar 2011

This operation, known as Operation b107, is the second high-profile takedown in Microsoft’s joint effort between DCU, Microsoft Malware Protection Center and Trustworthy Computing – known as Project MARS (Microsoft Active Response for Security) – to disrupt botnets and begin to undo the damage the botnets have caused by helping victims regain control of their infected computers. Like the Waledac takedown, this action relied on legal and technical measures to sever the connection between the command and control structure of the botnet and the malware-infected computers operating under its control to stop the ongoing harm caused by the Rustock botnet. As you may have read, the Rustock botnet was officially taken offline yesterday, after a months-long investigation by DCU and our partners, successful pleading before the U.S. District Court for the Western District of Washington and a coordinated seizure of command and control servers in multiple hosting locations escorted by the U.S. Marshals Service.

Article:
http://blogs.technet.com/b/microsoft_on_the_issues/archive/2011/03/17/taking-down-botnets-microsoft-and-the-rustock-botnet.aspx

Update
An overview of Rustock
http://blog.fireeye.com/research/2011/03/an-overview-of-rustock.html
Homegrown: Rustock Botnet Fed by U.S. Firms
http://krebsonsecurity.com/2011/03/homegrown-rustock-botnet-fed-by-u-s-firms/

{ 0 comments }

Pharmaceutical Spam

by certifiedbug on January 27, 2011

in Internet Security

This one which just came into my mailbox deserves its own note, don’t be fooled.

The links in the email direct to a new domain in China.

Domain Name………. bestdrpillseng.com
Creation Date…….. 2011-01-25 01:49:23
Registration Date…. 2011-01-25 01:49:23
Expiry Date………. 2012-01-25 01:49:23
Organisation Name…. sun jun
Organisation Address. jiefanglu344hao
Organisation Address.
Organisation Address. jingmen
Organisation Address. 434000
Organisation Address. HB
Organisation Address. CN

http://certifiedbug.com/blog/tag/pharmaceuticals/

{ 0 comments }

“Krebs on Security” Blog

The Obama administration is inviting leaders of the top Internet domain name registrars and registries to attend a three-hour meeting at the White House next month about voluntary ways to crack down on Web sites that are selling counterfeit prescription medications.

“The purpose of this meeting is to discuss illegal activity taking place over the internet generally, and more specifically, voluntary protocols to address the illegal sale of counterfeit non-controlled prescription medications on-line,” the invitation states.

http://krebsonsecurity.com/2010/08/white-house-calls-meeting-on-rogue-online-pharmacies/

http://certifiedbug.com/blog/tag/pharmaceuticals/

{ 0 comments }

Online pharmacy faked logos

May 25, 2010

An on-line pharmacy was taken down May 20, 2010 as the PGEU prepared to circulate a memo to its members warning them the site had designed a fake certificate with the forged signature of Filip Babylon, president of the Pharmaceutical Group of the European Union (PGEU). The Cancer Care Pharmacy website, which claims to be [...]

Read the full article →

FDA to review femur fractures connection

March 10, 2010

FDA Drug Safety Communication: Ongoing safety review of oral bisphosphonates and atypical subtrochanteric femur fractures 03-10-2010 Patients and healthcare professionals may have questions about oral bisphosphonate medications and atypical subtrochanteric femur fractures – fractures in the bone just below the hip joint. Oral bisphosphonates are commonly prescribed to prevent or treat osteoporosis in postmenopausal women. [...]

Read the full article →

Osteoporosis drugs: possible effects of long term use

March 9, 2010

Pharmaceutical company Merck’s patent on the Osteoporosis drug “Fosamax” expired in February 2008 leaving the gate open for generic drug makers to roll out low-cost versions. The brand “Fosamax” is expensive, Merck & Co reported second quarter 2009 sales of $277 million for FOSAMAX alone. Presumably with generics available more people will be able to [...]

Read the full article →

FDA Warns Public of International extortion scam

January 4, 2010

FDA News Release Dec. 29, 2009 FDA Warns Public of Continued Extortion Scam by FDA Impersonators The U.S. Food and Drug Administration is warning the public about criminals posing as FDA special agents and other law enforcement personnel as part of an international extortion scam. The criminals call the victims — who in most cases [...]

Read the full article →

FDA Issues Warning Letters to Web site Operators

November 23, 2009

FDA NEWS RELEASE The U.S. Food and Drug Administration today completed a coordinated, weeklong, international effort, called the International Internet Week of Action (IIWA), intended to curb illegal actions involving medical products. During the effort, the FDA’s Office of Criminal Investigations (OCI), in conjunction with the Center for Drug Evaluation and Research and the Office [...]

Read the full article →

Recipezaar redirect to Canadian Pharmacy

January 13, 2009

Blog spam with links to member pages at Recipezaar led me to take a closer look. Without a member’s number in the url: Adding a member ID from the blog spam led to such as: Which swiftly redirected to Canadian Pharmacy. www.recipezaar.com HTTP adsremote.scrippsnetworks.com HTTP canadian-meds-shop.com Interesting… Domain Name: recipezaar.com Registrant: Host Master Scripps Networks [...]

Read the full article →