Internet Domain Registry

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Tuesday, 22 July 2008

News Headlines Still Out of Control

Posted on 17:51 by Unknown
We reviewed 66 websites which were found in email messages which made reference to today's News Headline Infection file, "/viewmovie.html".



Forty-one of the domains were live at the time of this review.

Not all of those actually had the virus live on them though . . .

Those which did, download a file "codecinst.exe" after telling the visitor they are missing the proper Codec to view the video file.

My McAfee Anti-Virus doesn't currently detect this file as being a virus, however many others do, including Norton, which strangely calls it "Trojan.Pandex".

The websites which were hacked in order to host the infection files include:

http://aelnoz.org/viewmovie.html
http://afg.es/viewmovie.html
http://albertruiz.net/viewmovie.html
http://asjsiderno.it/viewmovie.html
http://automoviliaria.es/viewmovie.html
http://bazweb.com/viewmovie.html
http://billmannart.com/viewmovie.html
http://cagliosrl.it/viewmovie.html
http://candou.com.br/viewmovie.html
http://carlacruz.es/viewmovie.html
http://ceramix.it/viewmovie.html
http://edv-basics.de/viewmovie.html
http://emineacar.com/viewmovie.html
http://espaideioga.net/viewmovie.html
http://factoria3.com/viewmovie.html
http://finquattro.eu/viewmovie.html
http://fonderialtopascio.it/viewmovie.html
http://galvatoledo.com/viewmovie.html
http://gennarogirone.it/viewmovie.html
http://groupjing.com/viewmovie.html
http://helgenaesvand.dk/viewmovie.html
http://ilariarezzi.it/viewmovie.html
http://investimentibrasile.com/viewmovie.html
http://jaim.virtualvalley.nl/viewmovie.html
http://kwhgs.ca/viewmovie.html
http://laconchigliadoro.it/viewmovie.html
http://last-minute-reisen-4u.de/viewmovie.html
http://leonardodavi.com/viewmovie.html
http://matteociaramitaro.it/viewmovie.html
http://millefiori.com.br/viewmovie.html
http://nebottorrella.com/viewmovie.html
http://neticon.pl/viewmovie.html
http://overunity.it/viewmovie.html
http://projetsoft.net/viewmovie.html
http://samecru.com/viewmovie.html
http://scuderiabiasuzzi.it/viewmovie.html
http://sguardoinfinito.com/viewmovie.html
http://singtwice.de/viewmovie.html
http://sugar-dreams.it/viewmovie.html
http://tautau.web.simplesnet.pt/viewmovie.html
http://textilhogarnovadecor.com/viewmovie.html
http://thewindsorhotel.it/viewmovie.html
http://villamariamerano.com/viewmovie.html
http://www.agon.ro/viewmovie.html
http://www.anakonda.info/viewmovie.html
http://www.angelobaldy.it/viewmovie.html
http://www.baccarelli.it/viewmovie.html
http://www.bachir.it/viewmovie.html
http://www.bedbreakfast.na.it/viewmovie.html
http://www.bojan.de/viewmovie.html
http://www.clickjava.net/viewmovie.html
http://www.dammer.info/viewmovie.html
http://www.djlofty.pwp.blueyonder.co.uk/viewmovie.html
http://www.edifil.es/viewmovie.html
http://www.frappevending.com/viewmovie.html
http://www.fytema.es/viewmovie.html
http://www.gildas-saliou.com/viewmovie.html
http://www.go-art-morelli.de/viewmovie.html
http://www.go-siegmund.de/viewmovie.html
http://www.hgleichner.de/viewmovie.html
http://www.itelimpianti.com/viewmovie.html
http://www.koehler-hausverwaltung.de/viewmovie.html
http://www.nepi.si/viewmovie.html
http://www.radieschenhein.de/viewmovie.html
http://www.sorayamodella.com/viewmovie.html
http://www.wortmannweb.de/viewmovie.html

As many as 21 of these domains were hosted on a single IP address, 195.110.124.133, which is actually on the "DadaNet" hosting provider in Italy. (We've sent them a notice with the 23 domain names, including 2 others on 195.110.124.188.)

97 different Spam subjects were used by this campaign (or group of campaigns) in the past 48 hours.

"brainstorming" To Be Banned Under Equality And Diversity Rules
[audio] Catholic Church Condemns Metrosexuality
[audio] Church Group Offers Homosexual New Life In Closet
[audio] Mccain Vows To Withdraw All Troops From The U.S.
[video] Bush Tours America To Survey Damage Caused By His Disastrous Presidency
[video] Hulk Smashed
2008 Presidential Election Results Leaked
Al Qaeda Reports Declining Revenues in Fiscal '08
All Baseball Players May Be Indicted For Steroid Abuse
Angeline Jolie Pregnancy. 'it Was All A Hoax!'
Army Relent On Shooting Live Pigs In Training Exercise - Will Shoot Illegal Immigrants Instead
Arnold Says im Gay Too!
Barack Obama Caught In A Time Warp
Bearded Lady Gives Birth
Blair:Im Not Gay, Thats Just My Accent
Boy 4, pulls off sister's ear
Boy pokes fork into sister's eye
Brave Suicide Bomber Survives Blast!
Bush Down to 8 Friends on Myspace
Bush Sells Louisiana Back to the French
Bush 'Troubled by Gay Marriages. Declares San Francisco Part of 'Axis of Evil'
Cindy Mccain Talks About Her Boobs
Cristiano Ronaldo Disses Paris Hilton "um Louro Mudo Feio!"
Existince of Poor People A Surprise, Says Bush
Gay Bishop Was A Wrestling Pro
Gay Marriage Could Be Profitable
Gay Men Perceive Each Other As Homophobic
Gays Banned From Owning Pets In New York
George W Bush Slams Tony Blair
God Accepts Responsability for Hurricane Katrina
God Destroys Boise For Not Being Gay Enough
Gus Hiddink Heads for Gulag
Hillary Clinton Gets Night Job
Home Office To Deport Anyone with Iq Below 100
Horse gets swallowed by snake
Horse kicks Harrison Ford in stomach
Horse kicks Ralph Lauren in stomach
Horse wins owner $17m
Horses breaks riders skull in freak attack
Ican To Shut Down Email Services World Wide
JFK long-lost heir found
JFK memoirs reveal affair
JFK memoirs reveal illegitimate son
Kids leave robbery victim dead
Kids rob elderly, police open fire
Madonnas Former Home Destroyed By Jesus
Man breaks arm in horror fall
Man loses eye in fight
Martian Soil Fantastic For Growing Weed Says Nasa
Mccain - Iran Has Weapons of Mass Destruction
Mccain And Bush To Dance In Puppet Show
Mccain Says Unsure If Obama A Secret Hippopotamus
McDonald's Happy Meals In San Francisco To Include Gay Marriage License
Michael Jackson is hermaphrodite. Watch the video.
Microsoft's AntiSpyware Tool Removes Internet Explorer
NASA to use Space Shuttles to Kill Birds
nazi Toddlers Ruined My Birthday
Obama Captures Osama
Obama Is Anorexic Over-Exerciser;
Obama is gay. Watch the Proof.
Old Man Dies Inside Paris Hilton
One Hot White Chick Injured in Tsunami Disaster
Pamela Anderson Shouts, "i'm Gonna Remarry My One And Only True Love Tommy!"
Paris Hilton Charges For Pussy
Paris Hilton Infested With Cockroaches
Paris Hilton Initially Denies Having Inverted Nipples
Paris Hilton Is Going To Jail
Paris Hilton Lectures on Dickens And Dostoevsky
Paris Hilton To Operate New Atom Smasher
Paris Hilton Tosses Dwarf On The Street
Paris Hilton Wins Pulitzer Prize
Pepsi sues Coke for $892mn
Police open fire on elderly in Iowa
PopeWatch: Fox News Personally Confirms the Pope's Death
President Bush's iPod: The Complete Playlist
Prominent Male Hooker Forced To Step Down After Sex With Sleazy Evangelist
Raw footage of snake swallowing horse
Release Of The Nancy Pelosi Sex Dvd Causes Mass Erectile Dysfunction In Us
Right To Own Guns Upheld
Ronald Reagan Prime Suspect In Bank Robbery
Sarah Jessica Parker Arrested For Gross Negligee
Sarkozy Carla Bruni Sex Film Shocker At Windsor Castle
School Board Adopts Gay-Ass Uniform Policy
Shocking Video Shows Spongebob And Gay Sex!
Snake caught swallowing horse
Spongebob Denies Reports That Hes Gay
Stock Markets Close As Global Earth World Planet International Buys All Shares
Switzerland To Be Devoured By Black Hole
Teenage Girl obviously Having Affair With Bat
The Meat Wars: Jessica Simpson's Shirt Tees-Off Pam Anderson
Theodore Roosevelt Was A Gay Man
Tiger Woods Will Call Next Son Monkey
Ufos Sighted Over Uk
Unemployed To Be Used For Soup
White Male Workers Banned In Britain
Woman loses foot in shock attack
Woman loses nose after dog attack
Email ThisBlogThis!Share to XShare to Facebook
Posted in | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • 2009 Year in Review
    As 2009 comes to a close I wanted to take a minute to thank all of the people who have been helpful to this blog this year, and to share bac...
  • What about the Social Security Numbers? (The Utah Data Breach and your SSN)
    The Utah Data Breach This week the continuing saga of the Utah Medicaid Data Breach continued to unfold. If you haven't been following...
  • Top Brands Imitated by Malicious Spam
    WebSense recently released an InfoGraphic titled "Top Five Subject Lines in Phishing Emails." for January 1, 2013 through Septemb...
  • Carder Christopher Schroebel gets Seven Years
    21 years old and thinking about Cybercrime as a career choice?  Think again.  Seattle-based U.S. Attorney Jenny Durkan told a press conferen...
  • Stop the Rumors: Quit SMSing about WalMart Gang Initiations
    My daughter and her teenage friend were sitting on the couch watching TV today when they began getting text messages on their phone. Here...
  • New BBC spam mocks Georgia's President, Spreads New Virus
    This morning we've received more than 300 copies of a new "BBC" spam campaign which mocks Georgia's President and spreads ...
  • New Year's Waledac Card
    We haven't seen a new version of Waledac since Independence Day (July 4, 2009), but it looks like its back! I'm on vacation today, s...
  • Digital Certificates Update
    A quick update from the previous post. The Digital Certificates spam campaign against Merrill Lynch continues, but the good guys seem to be ...
  • ATM Cashers in 26 Countries steal $40M
    CBS News in New York has a video on their website this morning title Cyber-attacks behind possibly record-breaking bank heist . Former FBI ...
  • A New Year and Anti-Virus Products Are Still Losing
    One of our most popular blog posts in 2008 was back in August - Anti-Virus Products Still Fail on Fresh Viruses . I'm sad to report tha...

Categories

  • china
  • computer security careers
  • conficker
  • cyberwar
  • digital certificates
  • facebook
  • fake av
  • gumblar
  • koobface
  • law enforcement
  • malware
  • pharmaceuticals
  • phishing
  • public policy
  • spam
  • twitter
  • twitter malware
  • waledac
  • zbot

Blog Archive

  • ►  2013 (21)
    • ►  December (4)
    • ►  November (1)
    • ►  October (1)
    • ►  September (1)
    • ►  August (3)
    • ►  July (1)
    • ►  June (1)
    • ►  May (5)
    • ►  April (3)
    • ►  March (1)
  • ►  2012 (18)
    • ►  August (1)
    • ►  June (1)
    • ►  May (7)
    • ►  April (2)
    • ►  March (7)
  • ►  2011 (28)
    • ►  November (3)
    • ►  October (1)
    • ►  August (4)
    • ►  July (6)
    • ►  June (1)
    • ►  May (2)
    • ►  April (2)
    • ►  March (6)
    • ►  February (1)
    • ►  January (2)
  • ►  2010 (80)
    • ►  December (6)
    • ►  November (10)
    • ►  October (6)
    • ►  September (12)
    • ►  August (5)
    • ►  July (4)
    • ►  June (11)
    • ►  April (7)
    • ►  March (8)
    • ►  February (4)
    • ►  January (7)
  • ►  2009 (92)
    • ►  December (12)
    • ►  November (11)
    • ►  October (16)
    • ►  September (7)
    • ►  July (5)
    • ►  June (10)
    • ►  May (2)
    • ►  April (6)
    • ►  March (7)
    • ►  February (6)
    • ►  January (10)
  • ▼  2008 (101)
    • ►  December (7)
    • ►  November (17)
    • ►  October (11)
    • ►  September (10)
    • ►  August (22)
    • ▼  July (12)
      • FBI & Facebook: Storm Worm gets it all wrong!
      • To Understand the War on Terror: Read This
      • Top News in Spam = Old News
      • Two Spammers Doing Time and One That Got Away
      • Amero to Replace Dollar? Could Storm Worm Be Right?
      • News Headlines Still Out of Control
      • Russian Cybercrooks, CoreFlood, and the Amazing Jo...
      • 22 More Romanians meet The Long Arm of the Law
      • Nuwar Looks for News Readers?
      • Storm Worm Salutes Our Nation on the 4th!
      • 7-11 ATM Hackers (?) - More details
      • July Storm Worm gives us some Love
    • ►  June (3)
    • ►  May (7)
    • ►  April (5)
    • ►  March (2)
    • ►  February (1)
    • ►  January (4)
  • ►  2007 (31)
    • ►  December (3)
    • ►  November (9)
    • ►  October (3)
    • ►  September (2)
    • ►  August (5)
    • ►  July (5)
    • ►  January (4)
  • ►  2006 (5)
    • ►  December (2)
    • ►  October (3)
Powered by Blogger.

About Me

Unknown
View my complete profile