Phishing Revisited

Sunday, April 6th, 2008

As Chris mentioned in a previous post we used social engineering and phishing emails as an attack vector. The scope of the engagement prevented us from collecting any data that could be used to identify the user. The client was not out to make examples of their staff but to ...

Internet Fraud Dupes Men More Often Than Women

Sunday, April 6th, 2008

When it comes to being taken in by Internet fraudsters, men have a knack for losing cash, according to a new report from the Internet Crime Complaint Center. Data compiled from more than 206,000 complaints received last year by the U.S. Internet Crime Complaint Center (IC3) shows that men lost US$1.67 ...

Google Maps diminishing value of homes, causing “mental suffering”?

Saturday, April 5th, 2008

A couple is accusing Google of diminishing the value of their property and causing them "mental" suffering" for including their recluse home in the Google Maps Street View project. The road leading up to their house is apparently labeled "private", something the Street View operator must've missed. We checked the ...

Heads-up: Dangerous new customized IRS scam steals data

Saturday, April 5th, 2008

This afternoon, we got a highly customized email purporting to come from the IRS, which of course, does nothing more than load malware. The email is made out to a key financial contact here at Sunbelt (name obfuscated for this post). As you can see, it’s quite convincing. (Incidentally, “Sunbelt Software Distribution, ...

Analysis of a Win32.Delf Variant

Friday, April 4th, 2008

We have been noticing quite a few malware samples having references to or communicating with Google's SMTP servers. This post dissects one of these samples and in the process attempts to illustrate to the reader some reversing techniques and information gathering techniques, while explaining the behavior and impact of this ...