• Home
  • About
  • Archives
  • Icon Gallery
Subscribe: Posts | Comments | E-mail
  • 'Net Culture
  • Downloads
  • Music
  • PHP/mySQL
  • Teh Funneh
  • Tools
  • Video
  • Web Dev

Snipe.Net

404 - Page Not Found

Perhaps the links below might help you find what you are after:

Ad
Posted on November 17, 2008 - by snipe

Gift Guide for Geeks

'Net Culture Featured

With the holidays just around the bend (ack! HOW does that keep happening every year?), your non-geeky friends, relatives, significant others and other loved ones are going to end up in the frustrating position of trying to decide what to give you for Christmas/Hannukah/Kwanzaa/Solstice/Festivus. You are a geek, they are not. This causes them much anxiety, and too often leaves you with crappy presents. So do yourself - and them - a favor - and point them over to this post on TehAwesome.Net, which contains a fantastic list of excellent gift ideas for the geeks in their life (namely, you.)

Posted on November 7, 2008 - by snipe

Facebook and MySpace Users, Beware!

'Net Culture Featured

I have received two virus emails from two unrelated friends, indicating their accounts have been compromised. The messages are being sent through Facebook and both have had a spammy sounding subject line and a link to a geocities website. This was suspicious enough, but the fact that one message came from a friend I haven’t spoken to much in a year made it even more so.

The first virus email subject was “RE: You were caught on our secret camera!” and the second was “RE: You have a great hair cut in this movie” . The geocities addresses they pointed to were for user’s reedgates21 and richiemack11.  I’ve googled both addresses and gotten no results, so my guess is that they are randomly generating geocities accounts and generating these emails. A co-worker just one too - variation on a theme. Subject is “Don’t cry! Your mom will never see this movie”, also pointing to geocities, user name rkssbcyzk.

The links in the Facebook messages point to websites that contain viruses. Do NOT click on them.

Below are some examples of what they look like. (These are just images, so you can click on them for larger versions to see how the messages come into your inbox.)

Screenshot 1

Screenshot 2

Screenshot 2

Screenshot 3

If you’re using Firefox, your browser should warn you that you’re about to try to access a page that has been linked to virus/malware when you click on the Facebook messages in question, but if you’re using an older version of IE (shame on you!), you may not get any warning at all.

When You Receive a Virus Email

  1. DO NOT CLICK ON THE LINK
  2. Send an e-mail (or call) the sender, letting them know they are likely infected with a virus
  3. Suggest to the friend that they change their password from another, uninfected computer, and follow the steps further down in this article to remove the virus. (The method they use will depend on which virus they’ve been infected with.)
  4. Once the virus is cleared from the sender’s system, suggest they install a free anti-keylogger program and switching to Firefox just to be safe

Ultimately, its like anything else - common sense will go a long way. If the email seems odd (for example, the fact that the subjects sometimes start with “RE:”, as if they were replies to a message you sent, but you never sent a message with that subject), the phrasing seems off or not something your friend would actually say, something is probably awry. If you’re unsure, contact the friend directly and ask if they sent it to you.

This has been happening a lot lately, and the scenario Tech Crunch describes in this article sounds a lot like what’s happening here.

Keep in mind… Facebook applications do NOT have access to your password, so unless you installed an application that “required you” to download an executable application (any kind of .exe, .msi, etc), your Facebook applications should NOT be the cause. (Being an application developer, I can say that I couldn’t steal someone’s password even if I wanted to, using their API. HOWEVER there have been several reports of phony applications and groups that require some sort of download in order to get the full experience (Secret Crush was one of them).

NO application or group should EVER require you to download and install anything. If they do, report them to the social network immediately.

Also keep in mind that these viruses are not limited to Facebook users. I’m more familiar with the Facebook scenario because I avoid MySpace like the plague, but every time I login there are spammy and/or virus-y emails awaiting me. This isn’t as much a flaw in the Facebook platform as a result of social networks still being young and going through some growing pains. MySpace has just as much of a problem with these issues, if not moreso, since they have been historically less concerned about user experience and safety.

Another Variation - Fake YouTube Links

Another variation of the viruses being sent around Facebook is a similar message to users suggesting they are appearing in a YouTube video and providing the supposed link to view it. Instead of actually seeing a video, the virus advises viewers they need to download an updated version of Flash, which if followed may install a virus into the user’s computer. More info on that version, including sample messages and screenshots, is available here.

Why Its Working

If you find yourself infected, don’t be too hard on yourself. People have become so used to receiving emails from Facebook asking them to confirm this or that that it could be argued that people are more prone to click on a link that looks like it came from Facebook without being as diligent as we would be if we weren’t used to preforming this same action 10 times a day for legitimate Facebook actions. For example, most users of Facebook are familiar with the “Joe has added you as a friend on Facebook…” stock email.

Some users are conditioned to follow this process whenever they receive an email of this sort. Some people can receive this email several times every day and perform this login procedure so often it becomes automatic. This simple, clean design is very easy for a phisher to mimic. Since users are conditioned to follow this process blindly, they might not notice that the email is spoofed or that the address bar is slightly incorrect. This makes Facebook users ideal targets for the type of generic phishing attacks that are usually directed at financial institutions.

If You Clicked on the Link And Your Computer is Infected

I spent some time trolling Facebook’s forums to see if anyone had any specific direction on how to remove this virus from an infected machine. I found a few possible solutions, although since the people posting didn’t know or didn’t mention the name of the specific virus they were infected with, it may take some trial and error to find the solution that works best for you.

If your virus detection software determines that you’re infected with Bolivar23.exe, you can click here for directions on how to remove it.

In early August, there was a different one going around, called Koobface. Kaspersky’s website writes:

Net-Worm.Win32.Koobface.a spreads when a user accesses his/ her MySpace account. The worm creates a range of commentaries to friends’ accounts. Net-Worm.Win32.Koobface.b, which targets Facebook users, creates spam messages and sends them to the infected users’ friends via the Facebook site.  The messages and comments include texts such as:
  • Paris Hilton Tosses Dwarf On The Street
  • Examiners Caught Downloading Grades From The Internet
  • Hello
  • You must see it!!! LOL. My friend catched you on hidden cam;
  • Is it really celebrity? Funny Moments and many others.
Messages and comments on MySpace and Facebook include links to youtube.[skip].pl.  If the user clicks on this link, s/he is redirected to a site which purportedly contains a video clip.  If the user tries to watch it, a message appears saying the user needs the latest version of Flash Player in order to watch the clip. However, instead of the latest version of Flash Player, a file called codesetup.exe is downloaded to the victim’s machine; this file is also a network worm. The result is that users who have come to the site via Facebook will have the MySpace worm downloaded to their machines, and vice versa. [more]

One confirmed method of removing this virus is by downloading MalwareBytes - for some at the time, it seemed to be the only out of the box software that was able to remove it.

Still another that was around this time, Troj/Dloadr-BPL Trojan horse, was reported on by Sophos:

Messages left on Facebook users’ walls are urging members to view a video (which pretends to be hosted on a Google website), but clicking on the link and visiting the webpage takes users to a site which urges them to download an executable to watch the movie.

Sophos detects the executable file as the Troj/Dloadr-BPL Trojan horse, which in turn downloads further malicious code (detected as Troj/Agent-HJX), and displays an innocent image of a court jester sticking his tongue out. [more]

In Conclusion

This isn’t the first wave of social network viruses, nor will it be the last. There isn’t one social network that is more prone to them than others. As we allow social networks to become a bigger part of how we communicate, we must simply remain cautious and avoid the temptation to become complacent. Pay attention to the links you click on that are sent through Facebook, the same way you pay attention to suspicious e-mails that come in through normal e-mail.

Posted on November 6, 2008 - by snipe

Photo Retouching - How to Salvage a Dark Digital Photo

Featured Tools

I prefer not to shoot with flash when I can help it - I don’t like the way it washes colors out. Unfortunately, sometimes if you don’t leave the exposure open long enough, or don’t have time to adjust your exposure in the first place (candid shots are my favorite but can be a bitch if you only have a second to capture the moment), you end up with under-exposed photos that may be too dark to use. Dark photos are particularly challenging to retouch, because as you make the image lighter, it can end up looking very grainy. This tutorial will show you a few ways to salvage a dark photo and minimize some of the graininess.

Is IMAP/POP3 Gmail or Gtalk periodically rejecting your password?
by snipe on October 6, 2008
Planning Your Facebook Application
by snipe on September 27, 2008
Web 2.0 in Six Easy Steps
by snipe on September 13, 2008
Introducing TehAwesome.Net
by snipe on September 9, 2008
Simplest weather tool ever
by snipe on September 8, 2008
Using Twitter for Business?
by snipe on August 28, 2008
Managing registration spam in vbulletin
by snipe on August 13, 2008
« Older Entries
'Net Culture Featured

Gift Guide for Geeks

With the holidays just around the bend (ack! HOW does that keep happening every year?), your non-geeky friends, relatives, significant others and other loved ones are going to end up in the frustrating position of trying to decide what to give you for Christmas/Hannukah/Kwanzaa/Solstice/Festivus. You are a geek, they are not. This causes them much [...]

Downloads Featured Mac Downloads Windows Downloads

Track Your Stolen Laptop (for Free) with Adeona

Adeona is the first Open Source system for tracking the location of your lost or stolen laptop that does not rely on a proprietary, central service. This means that you can install Adeona on your laptop [...]

Misc

Firefox Add-On ErrorZilla breaks FF3 SSL error page

If you use the Firefox add-on ErrorZilla, which conveniently displays additional options (Try Again, Google Cache, Coralize, Wayback, Ping, Trace, and Whois buttons) when Firefox hits an error page, you may notice something frustrating happening in Firefox 3.

Music

Old Nerdy Bastard

Those of you into nerdcore, you simply MUST check out Old Nerdy Bastard - a collection of FREE nerdcore mashups featuring the music of MC Frontalot, MC Lars, Baddd Spellah, Optimus Rhyme, MC Hawking, and others. It is teh awesome, and it is teh free, so get with teh downloady. Also, if this kind of [...]

Featured PHP/mySQL

Planning Your Facebook Application

This is part one of a series - the technical how-to of creating the application will be discussed in a separate article. This article is intended to help you plan out your application to best prepare for coding and best leverage the new aspects of Facebook for exposure and social interaction.

Teh Funneh

E-cards That Don’t Suck

I gave up on e-cards long, long ago. Other than JibJab, there just weren’t any e-card sites that had anything worthwhile. Everything is always cheesy and stupid, and they spam the crap out of both the sender and recipient, if you can get past all their freaking ads to actually send the damned thing. I [...]

Featured Tools

Photo Retouching - How to Salvage a Dark Digital Photo

I prefer not to shoot with flash when I can help it - I don’t like the way it washes colors out. Unfortunately, sometimes if you don’t leave the exposure open long enough, or don’t have time to adjust your exposure in the first place (candid shots are my favorite but can be a bitch [...]

Video

Banana Man


Featured Web Dev

Web 2.0 in Six Easy Steps

This post, written by web designer James Paden of Xemion.Com, takes a snarky look at Web 2.0 and the cookie-cutter websites that seem to be popping up everywhere. Make with the clicky here.
Incidentally, this is a great web development blog, by the way, especially for freelance developers interested in taking a closer look at conversion [...]

View The Archives
  • Categories

  • What I'm Doing...

    • was stoked about her progress until the US armory server locked her out again. http://apps.facebook.com/wow_toons/ 5 hrs ago
    • is still unsure how she feels about people telling her to increase her personal brand. Marketing people... sheesh... 5 hrs ago
    • is making the WoW Armory and Facebook her bitch while on the bus. The powah! 8 hrs ago
    • More updates...
  • Random Thing You Probably Didn't Know About Me

    • I have a love/hate relationship with Facebook Application Development
  • Make With the Clicky!

  • Flickr Photos

  • AJAX/Web 2.0

    • AJAXDaddy
    • Noupe
  • CSS

    • Blueprint CSS
    • Noupe
  • Geek Humor

    • Bash.Org
    • Daily WTF
    • Diesel Sweeties
    • FailBlog
    • Penny Arcade
    • xkcd
  • Graphics

    • Adobe Kuler
    • Iconspedia
    • Photoshop Express
    • Smashing Magazine
  • Life Tools

    • LifeHacker
  • Misc

    • 419 Eater
    • Cellphone PSA Cards
    • Glarkware
    • TehAwesome
    • What’s That Bug?
  • Music

    • Hipster, Please!
    • Jonathan Coulton
    • MC Frontalot
    • MC Lars
    • Optimus Rhyme
  • PHP/mySQL

    • PHPBuilder
    • Zend
© 2008 Snipe.Net - Bitterness never tasted so sweet
The Papercut theme by WooThemes - Premium Wordpress Themes