Phishing: Update your PayPal account Information

Monday, January 16th, 2012

We have detected new phishing emails with subject “Update your PayPal account Information” that contain fake PayPal link that redirects to a phishing page used to steal PayPal account details of users that type their credentials. Email header: Subject: Update your PayPal account Information Date: Mon, 16 Jan 2012 00:43:26 +0100 Received: from WIN-QJ6LOAE77N1 (unknown [...]

Block malicious PDF files with Socket Sentinel Pro

Wednesday, January 11th, 2012

We will use Socket Sentinel Pro to block the download of malicious PDF files that contain javascript code. With this method we can block web exploit kits that spread PDF files containing malicious javascript code, example: Blackhole Exploit Kit. NoVirusThanks Socket Sentinel Pro is an advanced, yet user-friendly, bi-directional TCP traffic filtering software application which [...]

Block websites by TLD with Socket Sentinel Pro

Wednesday, January 11th, 2012

We will use Socket Sentinel Pro to set a pre-defined list of blacklisted TLDs to block domains. With this method we can block TLDs mostly used by web exploit kits, such as .co.cc, .co.nz and others, or we can simply block the user to visit websites with specific TLDs. NoVirusThanks Socket Sentinel Pro is an [...]

Limit users to visit only specific websites with Socket Sentinel Pro v1.4

Wednesday, January 11th, 2012

We will use Socket Sentinel Pro to set a pre-defined list of websites that the user will be able to visit and all the other websites that the user will try to visit, will be blocked automatically. NoVirusThanks Socket Sentinel Pro is an advanced, yet user-friendly, bi-directional TCP traffic filtering software application which allows you [...]

Karn!v0r3x v1.0 Exploit Kit

Saturday, January 7th, 2012

There is a new exploit kit in the wild, this time named Karn!v0r3x v1.0: Html code of the login page: <html> <head> <title>Karn!v0r3x v1.0 [Inicio]| Malandrines .n3t</title> <script language="JavaScript" src="files/fallt.js"></script> <style> body{background:black;color:yellow;} #karnivora{ margin:80px auto; background:url(‘files/karni.jpg’); width:500px; height:375px; border:1px solid red; -moz-border-radius:5px; border-radius:5px; color:black;font-size:20px;font-weight:bold; } form{float:right;} ol{list-style:none;margin:0px;padding:0px;} input{background:#2F2F2F;color:yellow;}   </style> </head> <body> <div id=’karnivora’> <form [...]

Lock your PC with Smart PC Locker Pro

Friday, December 30th, 2011

Smart PC Locker Pro is a lightweight and powerful application designed to lock your computer and all its functions so that no one can access your personal data, you can now move away from the PC safely. The program locks the entire system and it disables the task manager and all CD-ROM drives, so that [...]

Dump SAM Files and System32\Config Directory with Fast Raw File Copier

Thursday, December 29th, 2011

Fast Raw File Copier Pro easily allows you to copy files while showing progress percentages as well as the ability to copy files which generally cannot be copied through traditional means in the Windows OS. An example of a file which cannot be copied due to built-in Windows OS protection is the SAM file which [...]

MalwareHash.com SDK

Saturday, December 3rd, 2011

We have made available to our users the SDK to use our API service. Users can download the SDK from their Dashboard: Documentation of the SDK: ////////////////////////////////////////////////////////////////////////////// /////////////////// MalwareHash Function Definitions //////////////////////// /////////////////////////////////////////////////////////////////////////////     /* Validates an API Key in order to use the MalwareHash.com service   Returns TRUE if the key is valid [...]

Malwarehash.com: Free API key with 50 queries

Tuesday, November 1st, 2011

We have recently included a link “Free API Key” in the service api.malwarehash.com: Every new user that register to the service, can make use of this option. When the link “Free API Key” is clicked, it will generate an API key with 50 free queries that can be used for testing the service or for [...]

Integrate Antivirus Scanner Ikarus T3 with EXE Radar Pro

Monday, October 24th, 2011

Download EXE Radar Pro and install it. Download Ikarus T3 (T3 VDB + T3 Commandline Scanner): http://updates.ikarus.at/updates/update.html Extract ikarust3scan.exe in: C:\AVs\Ikarus\ Place there also t3sigs.vdb. Now open EXE Radar Pro and click the [TAB] Behavioral. Open the [TAB] Custom Scanners. Put a check in Enable Custom Scanners. Select the file: C:\Programmi\NoVirusThanks\EXE Radar Pro\Examples\Config.ini In the [...]