Category: Security

  • Facebook Fan Check Virus

    There’s a rumor going around and a lot of unconfirmed information that a facebook application known as fan check is actually a virus. I’m seeing several claims that if someone becomes a fan of this facebook app (which the page claims is undergoing changes and currently unavailable)… well if someone becomes a fan in the meantime their friends will all be notified of the app, password on the account changed, etc. I’m a bit skeptical at this point because EVERYTHING I see seems 3rd party and I don’t see anyone claiming that THEIR account was compromised. What I DO know is that some of the top search results are known malware attack sites. For instance the second result (which was the top result a few hours ago….

    (more…)

  • Clever Smitfraud….

    Sometimes you see a malware implementation that you have to have respect for the cleverness/ingenuity of the design. These pests can be dastardly to get rid of, but essentially this pest was occasionally popping up a “windows integrity scanner” installer. It wasn’t frequent, but it was persistent and the user was afraid that it was the gateway to other bad stuff. (That’s correct…) Anyway on inspecting the msconfig list of programs running at startup I found gsudxz.exe or some such nonsense (psuedo-random string of letters). I opted to reboot into safe mode and run the smitfraud removal tool because this looked like a typical smitfraud infection… turns out it wasn’t though.

    (more…)

  • Malwarebytes Anti-malware

    I’m usually a bit leery of new antispyware products. I do a first look at the rogue antispyware lists and just try to be as cautious as possible when moving away from the tools that I’ve tried and tested. I downloaded malwarebytes anti-malware very reluctantly to clean up a machine with “virus isolator” that nothing else seemed to be able to completely remove. It just seemed like the 10 headed hydra or something that kept coming back, so I found malwarebytes anti-malware recommended and must say it did the task quite well.

    (more…)

  • Virus Warning – Email Subjects – IRS Notice – Important Information from the IRS

    I’ve seen a couple of these emails today and wanted to give a post just to warn people that these are bogus and you should NOT follow the link suggested in the email. I HOPE no one reading this falls for it, but the “tax software update” that they are pushing is a virus. (SHOCK!) Only a little over half the antivirus vendors currently detect it.

    Read on for details on the message body…

    (more…)

  • Creating Strong Passwords that are Also Easy to Remember

    Making up passwords is something we have to do almost everyday it seems. Banking web sites, forums, email accounts, webhosting accounts, mail lists, etc. But it seems that making passwords is one of the things that some people have the hardest time doing. Maybe it’s not that it’s hard to make a password, but hard to make a GOOD password. First off, what’s a good password and what’s a bad password? Anything that is a dictionary word (even in another language) is a BAD password. Personal names are usually very bad choices. Why?

    (more…)

  • Windows updates for February could set record

    There could be a record number of vulnerabilities addressed next week when Microsoft releases an expected dozen updates for its Windows and Office products. (According to Brian Krebs at the Security Fix.) Tuesday February 13th is the date scheduled for the release of updates. One critical udpate will affect Microsoft’s security software (onecare/defender/etc.) 3 patches will affect Office. Most of the updates to be released are rated as critical.

    (more…)

  • Sony rootkit settlement

    Here’s a followup to one of the first big stories that I posted on… the Sony rootkit – there has been a settlement with the FTC (Federal Trade Commision). It has yet to be approved but, affected customers could see up to $150 to cover cost of repair (rootkit removal/etc.) They(Sony) must also allow the cds to be swapped. Under the settlement Sony does not admit breaking any law.

    (more…)

  • Extended support for XP Home and Media center

    I want to make a note of this here… Microsoft has announced that XP Home and Media center editions will get extended support on par with that of XP Pro. Essentially this means security updates for these versions of the OS should be available until 2014. Previously support for XP Home was to have ended as soon as December 2006, but was then extended modestly until after the release of Vista. The “Home” oriented products weren’t given the same length of support as the “Professional” or Business class products at that time. This announcement puts the two versions of XP on par with Pro.

  • Thank you NC department of revenue…

    I heard on the local news last night that the North Carolina Department of Revenue has lost a laptop that had ~30,000 state taxpayers information on it. Social Security numbers/etc… The report I saw that the state has setup a hotline to “teach citizens about identity theft” and have sent letters to those affected. Thanks… lose a laptop with 30,000 and then teach US about identity theft. How about teaching employees with sensitive information about encryption? ……. so I looked into it a bit further this morning.

    (more…)