Wednesday, August 15, 2007

Summer Peak... So as Summer Infections

Whew.... Are you fond of downloading things from the web? All out liking for torrents and chats links.

I`ll tell you one thing awareness makes your system secured and yourself scam proof. Rouge Application posing as " We found this and in order to remove it you have to purchase this product" Isn`t that absurd. Likeness of Outerinfo, Winantispyware and alot more in the making they are sprouting like mushrooms no wonder its rainy season in asia hahaha.

Get Protected setup a firewall / dont accept or open unsolicited e-mails / and caution in your downloads.

Trick for the day:

Setup another account in your system ( user logon ), and set it to limited not an administrator and use that for your convinience just dont forget it will not allow you to install things instantly.

Safe computing everyone

Tuesday, July 24, 2007

Piracy Nailed to the source...

Raids in Southern China Target $2 Billion Global Software Counterfeiting Syndicate
Hundreds of Microsoft customers provide evidence to help FBI and China's Public Security Bureau crack counterfeiting ring


REDMOND, Wash., July 24, 2007 // -- Raids and arrests in China over the past two weeks mark the culmination of a multiyear investigation into a major software counterfeiting syndicate based in the southern China province of Guangdong. The syndicate is allegedly responsible for manufacturing and distributing more than $2 billion worth of counterfeit Microsoft(R) software. The investigation into this syndicate, which is believed to be the largest of its kind in the world, was led by the FBI and China's Public Security Bureau (PSB). Microsoft Corp., hundreds of Microsoft customers and scores of Microsoft partners also assisted in the investigation.

These raids and arrests by the PSB, drawing on information provided by the FBI Los Angeles and Microsoft, targeted sources behind the illegal commercial production of Microsoft software, software components and certificates of authenticity. Law enforcement authorities and forensic specialists identified numerous replication plant lines that were involved in the CD production and were the source of counterfeit Microsoft products that had been supplied and sold to business customers and consumers around the world. The counterfeit software, found in 27 countries and on five continents, contained fake versions of 13 of Microsoft's most popular products - including Windows Vista(R), the 2007 Microsoft Office release, Microsoft Office 2003, Windows(R) XP and Windows Server(R). The counterfeits were produced in at least eight languages: Croatian, Dutch, English, German, Italian, Korean, Simplified Chinese and Spanish.
"Microsoft deeply appreciates the work of China's Public Security Bureau in taking such strong enforcement action with these arrests and raids in Southern China," said Brad Smith, senior vice president and general counsel at Microsoft. "This case represents a milestone in the fight against software piracy - governments, law enforcement agencies and private companies working together with customers and software resellers to break up a massive international counterfeiting ring. This case should serve as a wake-up call to counterfeiters. Customers around the world are turning you in, governments and law enforcement have had enough, and private companies will act decisively to protect intellectual property."
During the course of the multiyear investigation, more than 55,000 sophisticated-quality copies of counterfeit software were traced back to the same southern China criminal syndicate. These counterfeit products came from seizures by law enforcement and customs authorities, through submissions made by Microsoft customers and partners, and from test purchases. The 55,000 examined discs are believed to constitute less than 1 percent of the millions of counterfeit copies that are estimated to have been produced and shipped to distributors and countries across Europe, the Middle East, Asia, Australia, the United States and Canada. Countries around the world are expected to experience a significant decrease in the volume of counterfeit software as a direct result of this action.
According to World Customs Organization Secretary General Michel Danet, "Customs around the world, from Cairo to London, Vancouver to Hamburg, and New York to Beijing, seized dozens of shipments numbering thousands of counterfeit Microsoft software products produced by these criminals. This clearly shows that customs around the world are at the forefront of the battle to protect consumers from harm by counterfeit goods, and that sharing information is vital in order to build strong enforcement."
Customers and Resellers Report on Syndicate
Microsoft customers and software resellers played a major role in ultimately helping the FBI and the PSB identify and build the case against the China-based counterfeiting syndicate. Tens of thousands of customers used Microsoft's anti-piracy technology in Windows Genuine Advantage to identify the software they were using as fake. More than 1,000 of these customers then submitted physical copies of counterfeit Windows XP for analysis, which Microsoft was then able to forensically link to the counterfeit syndicate. In addition, more than 100 Microsoft resellers played a key part in helping to trace the counterfeit software and provided physical evidence critical to building the case, such as e-mail messages, invoices and payment slips.
"The evidence provided by Microsoft customers through the Microsoft piracy reporting tool proved to be essential in tracking down this criminal syndicate," said David Finn, associate general counsel for Worldwide Anti- Piracy and Anti-Counterfeiting at Microsoft. "It is no exaggeration to say that the ability of our customers to identify counterfeit software through Windows Genuine Advantage, and the subsequent help of our customers and partners, was absolutely critical in ultimately identifying this massive counterfeit manufacturing and distribution network. We take seriously our responsibility to protect customers from the productivity and security risks associated with counterfeit software, and we are committed to educating customers on what to look for and what to avoid, deploying engineering innovations to better protect the software, and pursuing criminal prosecutions to protect customers and partners when appropriate."
Protecting Customers From the Risks of Counterfeit Products
Customers expect to receive genuine, high-quality software, but counterfeit copies often contain malicious code and/or malware and fail to operate properly, presenting real risk through potential security breaches and the loss of business data, reputation and cost to recover from them.
According to an October 2006 IDC white paper sponsored by Microsoft, acquiring and using counterfeit product keys, pirated software, key generators and crack tools for Windows XP and the Microsoft Office system may increase the risk of exposure to viruses, worms and other damaging code, including spyware, Trojan horses and modified code. The study can be found at http://www.microsoft.com/athome/security/update/wga/default.mspx.
The Costs of Piracy
Globally, counterfeiting robs the software industry of an estimated $40 billion (U.S.) per year. Lost industry revenue is just the beginning; the fourth annual BSA and IDC global software piracy study (May 2007) estimated worldwide piracy rates at 35 percent in 2006. According to the study, reducing this rate by just 10 percent over four years could potentially generate 2.4 million new jobs, $400 billion in economic growth and $67 billion in additional tax revenue for the world economy. In the last 18 months alone, worldwide law enforcement agencies have seized more than 914,177 units of counterfeit Microsoft software.
The Microsoft Genuine Software Initiative
Microsoft launched the Genuine Software Initiative in 2006, and since then it has intensified its efforts to protect customers and channel partners from the risks of counterfeit software through an increased focus on education, engineering and enforcement.
More information about Microsoft's Genuine Software Initiative is available at http://www.microsoft.com/genuine.
Windows Genuine Advantage
As part of the Genuine Software Initiative, Microsoft is continuing to invest in anti-counterfeiting technologies and product features that protect the company's intellectual property and alert consumers to the presence of counterfeit software. Windows Genuine Advantage enables customers to validate their software remotely with Microsoft, giving customers the power to check whether they are using genuine software. Since July 2005, 512 million users worldwide have validated their copy of Windows through Windows Genuine Advantage. In 2006, there were nearly 400 million validations, with a failure rate of 22.3 percent.
About Microsoft
Founded in 1975, Microsoft (Nasdaq "MSFT") is the worldwide leader in software, services and solutions that help people and businesses realize their full potential.
SOURCE Microsoft Corp.

Thursday, July 5, 2007

Summer is up and so Malicious Codes!!!

Summer hmmm.... love that much time to spend on basements and secluded room, reconstructing old codes, creating one, and worst ad marketing company hiring them to ensure a good hit on their products.

For the past 2 weeks by far this is what came up to be infecting most of North America and European users. ( varrying from e-mail attachments to unprotected browsing )

Trojan-Downloader.Zlob.Media-Codec Trojan Downloader
Trojan.FakeAlert Trojan
Virtumonde Adware (General)
ClickSpring.PuritySCAN Adware (General)
WhenU.Save Adware (General)
Hotbar Toolbar
Trojan.Unclassified.gen Trojan
Rootkit.Win32.Agent.eq Rootkit
Trojan.Smitfraud Trojan
WinAntiVirus Pro Rogue Security Program

The one listed in red are family member see my reference to Vundo postings and you would know why....

Saturday, June 16, 2007

: Anti-Virus / Anti-Spyware / Firewall : When To Use or Not to Use

Just as for any cardinal rule of Using Security Applications
- Be sure you have enough or ample MB RAM for its usage.
- Be sure it comes from a respectable company.
- Be sure the product comes with a healthy support from your location.
- Be sure to read the manual before using one.

One Anti-Virus & Firewall per one system only! and Anti-spyware well at least use 2-3 just make sure its not service powered ( uses real time monitoring ). You don't want to be like Fort Knox!, system crawling like a turtle with a 60lbs bakcpack and most of all be sure it is user friendly one.


Most of the Security Applications today specific to Anti-Viruses they come in subscription, some of them are just jumping to the merging their products with a lot of perks. ( anti-spam / pop up blockers / phishing filters / website advisor and a lot more ). Just remember that their efficiency comes from the research behind them Viruses, spyware, malware, rootkits and etc etc. can change and mutate to something else in split seconds.


" No Security Application can say they are 100% Efficient"



Drop by this site for you to compare and research before buying one click me

Thursday, June 14, 2007

Vundo Infection - Evolution

Mcafee... Norton.... AVG.... etc etc
not one of the Leading Antivirus in the world can remove this
notorious worm and trojan. Recently it was retrofitted to be a rootkit to deploy Ad markets for multiple companies ( in particular WinAnti-virus Pro 2007, Winfixer and WinAnti-spyware ).

Fall of 2003 when I first saw this infection as a real trojan and with 2 months to the date it became the real carrier of Ads. How did one stay to be the best? almost all spyware and malware or adware get to resolved by Security Software - but not this guy.

Just my thoughts ( make it 10 cents ), I would highly commend such adversary as the creator of vundo. I would add that - you just joined the rank of one of my challenging codes to break.

Monday, June 11, 2007

MSN Messenger Infected w/ Scripting Worm!

Sample of this rising concern in MSN Messenger User Community
this is from one of the Anti-Virus Product Forum Site...

http://forums.microsoft.com/WindowsOneCare/ShowPost.aspx?PostID=1687267&SiteID=2

Get it fixed using this

Go to Normal Mode
Goto SpyBot advanced mode (download SpyBot if you havn't already) and then goto tools and system startup. Untick everything.
Reboot into normal mode once. (important, do not skip step out)
Reboot into safe mode and scan your computer with SpyBot (I know it works with SpyBot so I reccomend it but you might be able to use others) and then remove any viruses detected
Go back to the system startup menu of SpyBot and delete everything that has re-ticked itself, as this will be part of the virus.
Open up my computer and C drive. Click: Tools -> folder options -> View -> Tick the box marked "Show hidden files" and untick the box marked "Hide system files" press yes on the message that appears and then press apply
From the C drive open Windows -> System32 and arrange icons into the order they have been modified. Towards the bottom of the list of folders should be a folder with a random list of letters, this folder should be a hidden folder. Open the folder, if lsass.exe is stored inside then you have the right one and you must delete this folder, if not then try other folders with random names until you find the right one. (name varies depending on computer)
Now that you have deleted the folder with the random name, reboot into normal mode and log on. Some error messages should pop up saying that lsass.exe was not found. That is good because you just deleted it.
It isn't the genuine version of lsass but the virus! Now press Start -> Run -> Type: "regedit" and press enter -> Press Edit -> Find -> and type Lsass
Whenever the registry editor finds a file with lsass in it, hover your mouse cursor over it, if it is a file stored in the folder you deleted, then delete it from the registry, if not don't. Keep pressing F3 to go through every entry of lsass in the registry, deleting all the ones that link to the folder you deleted. Congratulations, your computer is clean.

Computing Today, Are we really secured

Do you have an Anti-Virus? Anti-spyware perhaps?
Do you have the latest updates?
Do you have a Firewall?
How did you know if your computer is virus & spyware free?
Are you using the best computer security ever known?

How did you know? Who told you so?
......a friend, your neighbor or was it a stranger over the web.

Is you computer slowing down?
......I takes twice the amount of time to login?

Are there advertising pop-ups?
......What are they? happen to click one of them? toobad!

Or is it just that the product you know that will and would
protect you is just not working?

Worst:
Is your credit card bills just right?
......having a problem signing in to one of those banking site
that you use to punch in your credit card number to pay online?

Or is it just weird programs you dont know you have is...
Asking you to purchase it?... youre about to be scammed

Or are you already a victim? of our own demise....
Are we really secured with our computing way life? What do you think?

If you would like to know more give me a buzz jfcoel@hotmail.com