Dynamoo's Blog
Malware, spam, scams and random stuff, by Conrad Longmore.
Friday 13 June 2008
One to watch: js.users.51.la
›
What the heck is js.users.51.la ? In fact, where the heck is .la anyway? And why am I asking? As I've mentioned before, there are possib...
5 comments:
advabnr.com and adsitelo.com
›
SQL injection time again, this time with two new domains advabnr.com and adsitelo.com both loading a script called b.js (i.e. advabnr.com/b...
3 comments:
Thursday 12 June 2008
bigadnet.com - lastest SQL injection domain
›
A continuation of the latest wave of SQL Injection attacks is bigadnet.com - many sites infected with "older" attacks have been ...
3 comments:
Tuesday 10 June 2008
UK Goverment sites hit by SQL Injection attacks
›
Do you trust the government with your personal data? A look at some recent national and local government sites that have been compromised wi...
SQL Injection: advertbnr.com, logid83.com, script46.com, rexec39.com
›
Another batch of domains being used in SQL Injection attacks: advertbnr.com, logid83.com, script46.com, rexec39.com. Sanitize your inputs ....
Monday 9 June 2008
Apple iPhone 3G
›
After lots and lots of rumours, the Apple iPhone 3G is finally here. It adds UMTS and HSDPA (3.5G), plus GPS and mapping. There's a new ...
SQL Injection: sslnet72.com, encode72.com, bannerupd.com, err68.com, cookieadw.com
›
Another batch of domains showing up in SQL injected are sslnet72.com, encode72.com, bannerupd.com, err68.com, cookieadw.com. Some notable c...
"Company Littmann Stethoscopes Co.Ltd" bogus job, spoofing medisave.net
›
medisave.net is an "under construction" website belonging to the wholly legitimate Medisave UK Ltd , a supplier of medical equipm...
2 comments:
Amazon.com - reverse pump and dump or blackmail?
›
I received this unintelligible email from an IP address in Russia (213.221.29.19), probably relating to the recent mystery outage at Amazon....
Thursday 5 June 2008
Googling for SQL injection infected sites
›
A very rough and ready Google search shows ( warning: results may lead to malware) 792,000 pages that were infected when Google visited th...
More SQL injection fun: view89.com, exe94.com and tag58.com
›
Yet more new domains in this never ending wave of SQL Injection attacks: view89.com, exe94.com and tag58.com. Infected sites load a malicio...
Chinese "selling-domain" mails
›
Probably not a scam, and really only a moderate hit on the Spam-O-Meter, but there do seem to be a number of emails from a person called Liu...
flyzhu.9966.org and exec51.com SQL injection attacks
›
More in the ever morphing world of SQL injection attacks. Sites that were hit with the xiaobaishan.net attack are now directing to flyzhu.9...
Wednesday 4 June 2008
Redmondmag.com and related sites serving up malware
›
One notable name that keeps coming up with regards to the latest round of SQL Injection attacks is Redmondmag.com, published by 1105 Media,...
win496.com, tag58.com, rundll841.com and sslput4.com: another SQL injection attack
›
Yet another SQL injection attack doing the rounds, this time inserting references to www.win496.com/b.js , www.tag58.com/b.js and www.rund...
2 comments:
Tuesday 3 June 2008
Some people are stupid
›
A classic post over at the F-Secure blog where some muppet "hacker" accidentally emailed out their malware generation tool and pu...
en-us18.com, libid53.com and rundll92.com SQL injection attack
›
Another bunch of at least three domains (perhaps more) being used in SQL injection attacks are en-us18.com, libid53.com and rundll92.com. In...
xiaobaishan.net - yet another SQL injection attack
›
It looks like the sites hit by the chliyi.com attack have been hit again, this time with an injection to a script pointing at www.xiaobaish...
2 comments:
Monday 2 June 2008
Bizarre USPS scam
›
It's hard to tell what the scammer is trying here due to the amusingly bad English. Mail originates from the spammers favourite email s...
Tuesday 27 May 2008
pest-patrol.com is not the real PestPatrol - part II
›
The fake pest-patrol.com site we mentioned a few days ago has fixed its download problem and has given us a sample. Like many of these fake...
‹
›
Home
View web version