June 2007 - Posts

A profitable use for stolen credit cards

Posted by Luis Corrons at  27 June 07 01:11     We have often talked about the freedom with which certain cyber-crooks circulate around the Internet, but I must admit that even I am surprised sometimes… The theft of credit card details and trading of this information is the order of the day. How is

Read More...


Dream System

Posted by Vicente Martinez at  20 June 07 05:04     “Dream System” is a bot that allows hackers to use infected machines as socket servers and to run any type of files in them. It launches two types of DDOS attacks: HTTP. UDP flood. The bot consists of: A server component, called “Dream Bot builder”, which

Read More...


MPack: how to infect thousands of websites

Posted by Luis Corrons at  20 June 07 02:04     We've been wondering for a few months now how malware mafias can hack so many web sites automatically to be exploited by MPack. Yesterday a few theories came to light, such as hinting that all the hacked servers all belong to the same virtual hosting

Read More...


More about Mpack

Posted by Vicente Martinez at  19 June 07 04:16     In the last hours, many things have been said about the MPack massive infection with more than 10.000 affected websites. For more information, visit the Websense site http://www.websense.com/securitylabs/alerts/alert.php?AlertID=782 . Although the data

Read More...


Botnet controller via web

Posted by Vicente Martinez at  13 June 07 11:00     Today, when I was tracking the server to which a variant of Trj/LdPinch sends information, I have come across, among the files in the server, some .php files that are used to control a botnet via web. The image below would be the initial screen from which

Read More...


Critical Bugs Discovered In Yahoo Messenger and Microsoft GDI+

Posted by Ismael Briones at  08 June 07 10:05     Three new vulnerabilites have been make publicly this week. Two for Yahoo Messenger Webcam ActiveX and one for Microsoft GDI+ Yahoo! Messenger Webcam Upload ActiveX Control Buffer Overflow Security company eEye Digital Security has discovered two vulnerabilities

Read More...


May spyware list

Posted by Vicente Martinez at  01 June 07 01:38     This month there have been changes in the first two positions. Adware/Lop occupies the first position and 47 detections below, the seconds position is occupied by Application/MyWebSearch. Meanwhile, Adware/Gator goes down to the third position of the

Read More...