Monthly Archives: April 2009

Another Facebook Phish Attempt

Image (1) fbstarter1.jpg for post 20016

This morning people began receiving messages in their Facebook inbox with a subject of "Look at this!" and a message body containing a simple link pointing you to fbstarter.com. Yesterday we saw a similar looking domain attempting to phish peoples Read more…

Share

Swine flu "cure" offered by Russian RX sites.

Image (1) picture-11.png for post 23584

It was sad but not at all surprising to see spammers exploiting the swine flu topic. Today we came across a yet another example of Internet "entrepreneurs" being cynical enough to use the situation for their financial benefit. Rx-Partners is Read more…

Share

Victory for Sophos at SC Awards

Default image

Excuse me for being brief, but I'm typing this from a broom cupboard backstage at the Infosec show in London. I'm surrounded by wires, audio-visual gear, a karaoke system (come by booth G50 in Earls Court at 4pm to hear Read more…

Share

Alarm raised over Adobe PDF zero-day vulnerability

Adobe PDF vulnerability

If you are one of the world's many users of Adobe's Acrobat PDF Reader software then there's good reason to prick up your ears and listen today, as details emerge of a critical zero-day vulnerability in the software that could Read more…

Share

InfoSec Pants

Image (1) pants-f.jpg for post 23575

Yesterday, I wandered around the first day of InfoSec Europe . I have been visiting InfoSec for the last 10 years and this was the first time at Earls Court. Maybe it was the fact that RSA had just happened Read more…

Share

Ever been spammed on a social network?

Default image

How about received a phishing message? Or sent a malicious link? It seems occurrences of cybercrime on social networking sites like Twitter and Facebook are becoming more and more commonplace. Today, we've published some research looking into just how common Read more…

Share

When is a file not a file?

Default image

Sometimes it is easy to examine a file and to tell what it is. Program files, at least on Windows, start with the two bytes 'MZ', after Mark Zbikowski, the Microsoft coder who invented the original EXE file format for Read more…

Share

Meet Sophos at Infosec in London

Default image

A quick hop and a skip and I'm no longer in San Francisco at the RSA show, but at Infosecurity Europe in London instead! Yes, the great and the good of the computer security industry have gathered once again (it Read more…

Share

Canadian anti-spam laws take an important step forward

Guest blog: Canadian anti-spam laws take an important step forward

Guest blogger Michael Argast, director of global sales engineering at Sophos, discusses changes in anti-spam legislation in his home country of Canada. Over to you Michael.. The Conservative government in Canada last week introduced the Electronic Commerce Protection Act to Read more…

Share

Spam referencing Swine flu outbreak

Image (2) canph.png for post 23571

Predictably enough, today we started to see spam taking advantage of concerns around the current Swine Flu outbreak. Surprised? We shouldn't be. Just another day in the office for spammers. Crawling news sites for suitable stories to use in campaigns Read more…

Share

Classic car rally at Sophos

Image (1) abingdon-mg.jpg for post 12074

Yesterday, Sophos's UK office in Abingdon was proud to play host to a classic car rally. Gorgeous weather greeted more than 50 classic cars, including MGs (most of which were actually built in Abingdon between 1929 and 1980) and Morgans Read more…

Share

Inconceivable!

Image (1) ircbaeg1.png for post 23566

I came upon this installer today called "Microsoft Virus Fix". Being somewhat curious, I proceeded to run the application and the following message appears: Ok. I was somewhat underwhelmed (not impressed) by the application's appearance. In fact, it already tells Read more…

Share

Salma Hayek's email account is hacked

Image (1) salma-hayek.jpg for post 12073

According to reports, Hollywood actress Salma Hayek has fallen victim to hackers, who have broken into her email account and released images of her private communications. The actress, remembered equally well for her Oscar-nominated role in the biopic of Frida Read more…

Share

Amazon spoofed in spammed-out malware attack

Image (1) 01_amazon-dot-com.jpg for post 23556

For those of you tired of seeing and hearing about malware being distributed via the infamous UPS emails, here's a little something new for you this morning from our spam traps; Your transaction has been processed by WorldPay, on behalf Read more…

Share

Windows Blocked

Image (1) ransom.png for post 23552

There's been a lot of talk in the last couple of days about a large botnet announced by the folks over at Finjan. We detect the malware behind that network as Mal/Dropper-DL which installs several more pieces of malware, including Read more…

Share

Councillor found guilty in spyware case

Default image

A councillor from Greenville County, South Carolina, who was convicted this week of spying on fellow council workers' PCs, could face up to 16 years in jail. Tony Trout was arrested last October, after infecting PCs with the RemoteSpy program, Read more…

Share

Happy birthday to the Clu-blog

Image (1) happy-birthday.jpg for post 12071

Grab your bagpipes, join the marching band, festoon your balustrades with bunting... because this blog is one year old today! Huzzah! Although the Clu-blog wasn't unleashed on the great unwashed public until some time in July 2008, it began internally Read more…

Share

Postcard from RSA

Dear Clu-blog reader, Having a lovely time in San Francisco at the RSA Conference. It's really rather unseasonably sunny - you'd like it! I haven't been able to blog as much as I'd like as Christina (who ensures discipline on Read more…

Share

Good riddance - Zango shuts down

Image (1) gravestone.jpg for post 12069

Not many people will be shedding a tear this week at the news that notorious adware distributor Zango has shut its doors. According to media reports, Zango (who were previously known as 180Solutions) was unable to remain in business because Read more…

Share

New Zealand websites hijacked

Image (1) ms-newzealand-hacked.jpg for post 12068

Turkish hackers have managed to break into New Zealand domain registrar Domainz.net, redirecting unsuspecting surfers to defaced versions of popular websites by changing DNS records. Websites such as www.hsbc.co.nz, www.sony.co.nz, coca-cola.co.nz, www.xerox.co.nz, www.msn.co.nz, www.microsoft.co.nz and hotmail.co.nz as well as security Read more…

Share