Eye on Security: Windows Ransomware, DLL Hole, Malware, and More
- Dr. Roy Schestowitz
- 2010-09-03 06:46:58 UTC
- Modified: 2010-09-03 06:46:58 UTC
Summary: Menaces and unpleasant 'niceties' that only affect users of Windows this week
●
Russian cops cuff 10 ransomware Trojan suspects [
via]
PCs infected by the WinLock Trojan at the centre of the scam were rendered unusable because the malware disabled key Windows components. More embarrassingly pornographic images were displayed on compromised machines, IDG adds.
●
Polymorphic ransomware tops malware charts
Ransomware variant TotalSecurity is topping the malware charts, according to the latest threat report from security firm Fortinet.
August was the biggest comeback month since March for TotalSecurity, which locks out applications and data, and then demands a ransom to restore access.
●
Microsoft Releases 'Fix It' for DLL Hole
The DLL security vulnerability first grabbed headlines in August when a Slovenian security research firm pointed out that, under some circumstances, a malicious hacker could deploy a booby-trapped DLL file into a directory where Windows will load it, potentially granting the attacker control over the system. But it later surfaced that a U.S. security researcher had warned Microsoft about the DLL issue almost a year before, and had even published an academic paper on the threat last month.
●
Google Code hosting malware-spreading project
Google Code's project hosting feature has occasionally been used by malicious individuals for storing and spreading malware.
[...]
After this discovery was made public, Google removed the offending project. But this instance shows that the company must find a better way of detecting malware hosted on its sites.
●
University loses nearly 1 million dollars to malware
Thieves appear to have stolen the funds from University of Virginia after compromising a computer belonging to the University's Financial Controller. Malware intercepted the Online Banking Credentials for the University's Bank accounts and initiated a fraudulent wire transfer for $996,000 to a Bank in China.
●
25 percent of Windows malware now targets USB storage devices
In a survey of small businesses, PandaLabs discovered that 48 percent had been victims of malware in the past year. Of those businesses infected, 27 percent were able to verify that a compromised USB device was at the root of the issue.
●
New malware detects browser, shows fake malware warning page
While the malware is a pretty good attempt, it's not perfect. The goal is to get the user to download and install something, shelling out some cash in the process, which neither of the three browser vendors would ever recommend. The Firefox warning page, meanwhile, has an obvious typo ("Get me our of here"). In addition, it's suspicious that a webpage is going out of its way to tell you it is protecting your purchase. It's also not hard to check that the supposedly detected files do not actually exist on the user's computer. All of these missteps should raise red flags immediately; having said that, we've still not before seen this level of detail and effort from the bad guys.
●
Heartland pays another $5.4m for malware infection
The United States' fourth largest credit card payments processing company Heartland Payment Systems has agreed to pay a US$5 million ($5.4 million) settlement to its financial services customer Discover over a data breach caused by a malware infection.
Heartland processed card payments for Visa, Mastercard and other financial service providers to the tune of US$70 billion in 2009.
●
Rogue Win7 AV Copies the Microsoft Security Essentials Site
There are downsides to market success, and in the case of Microsoft Security Essentials is that attackers build malware designed to piggy-back ride the free security solution from Microsoft.
Recent Techrights' Posts
- Finland Needs to Dump Microsoft (Microslop) for National Security Reasons and the Same is True for Hundreds of Countries
- "I don't see why Ryssäs would want Finns to use microslop products..."
- Fight Til the End
- This comes to show that persistence pays off
- SLAPP Censorship - Part 79 Out of 200: They Will Soon Reach the 100 KG (Kilograms) Milestone; Wheelbarrows, Not Justice (Quantity of Legal Papers Sent to Us)
- It's about the quality, not quantity (unless your sole aim is to drown out or "flood the zone")
-
- "The Society of Media Lawyers" (UK) is a Truly Malicious Anti-Media Lobby Which Helps Rich/Abusive Americans and Hostile Countries Attack Actual Media Workers in the UK
- They typically source their money from aboard to besiege domestic actors (like honest journalists or independent outlets that document suppressed beats/topics)
- Slop Still Waning, Its Momentum is Driven by Companies That Stand to Lose a Lot (or Everything) When the Bubble Pops
- When it comes to LLM slop disguised as news, it's just not working out
- Gemini Links 17/05/2026: arXiv Brings Down the Hammer, UnderPOWERed, and Slopping With Tcl/Tk
- Links for the day
- Links 17/05/2026: Amazon Employees Herded Into Slop, Taiwan Sold Down the River by Cheeto
- Links for the day
- Links 17/05/2026: Society of Media Lawyers (Brett Wilson LLP et al) Lobby for More SLAPPs in the UK, “Courage in Journalism Award” Given in Oppressive Country
- Links for the day
- Cyber Show UK is Already Available Over Gemini Protocol
- This past week the total number of active Gemini capsules hit all-time records several times
- The Corrupt Lecture the Non-Corrupt - Part XXV - Not Bringing Intelligence to the EPO, Not 'Artificial Intelligence' Either (But Intelligence-Eroding Drugs)
- The EPO was meant to be about science and law. In practice, however, it's about breaking the law and being stoned.
- The Cyber Show on Why Coding is Important and Slop Cannot Change or Replace That
- Hand-crafting one's site has plenty of advantages
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, May 16, 2026
- IRC logs for Saturday, May 16, 2026
- Gemini Links 17/05/2026: Music Theory, Reticulum Git Repos, and Releasing Kiln
- Links for the day
- Links 16/05/2026: Cuba Plunges Into Darkness (Energy Wasted by Nonsense), Googlebooks as Slop Nonsense (Energy Waste and Time Wasted)
- Links for the day
- Links 16/05/2026: Climate Issues, Free Speech, and Monopolies/Monopsonies
- Links for the day
- Gemini Links 16/05/2026: Retreat and Devuan Manuals
- Links for the day
- SLAPP Censorship - Part 78 Out of 200: Slandering Me for Saying the Truth About Graveley and Garrett's Abuse of Processes, Stacking Dockets
- These are the sorts of things British taxpayers ought to talk about
- "AI" Became a New Name or Placeholder for Debt
- Because they will only ever lose money for this thing with "tokens" or "potential"
- "Microsoft Goodwill and Intangible Assets" Down Two Years in a Row, According to Microsoft
- Microsoft cannot sell these, so what is their real relevance?
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, May 15, 2026
- IRC logs for Friday, May 15, 2026
- IBM: Shares Down 30%, Mass Layoffs, IBM Says "Goodwill" Grew by 10% to Over a Third of the Company's Total "Worth"
- According to IBM
- Microsoft LinkedIn Layoffs "Very Likely Higher" Than 1,000 People
- Microsoft is bleeding
- The Corrupt Lecture the Non-Corrupt - Part XXIV - Luis Berenguer Giménez at the EPO (European Patent Office) Became the Punchline of EPO Staff
- "the fact that Luis was caught with cocaine causes laughter. The use of cocaine in itself is not the real shocking bit."
- IBM Keeps Culling Essential Linux, Fedora, GNOME, and GTK Staff
- Over a month ago IBM laid off over 400 Red Hat engineers
- Cisco Cuts Nearly 4,000 Jobs Because of Debt, Nothing to Do With Slop
- The media keeps talking about revenue, not profits
- Gemini Links 15/05/2026: UDP Game Forwarding Over SSH, Avoiding LLMs, and Alhena 5.5.9
- Links for the day
- Links 15/05/2026: Electric Company Shuns Entire Town to Prioritise Only Data Centres, Saudi Arabia and U.A.E. Carried Out Secret Attacks in Iran
- Links for the day
- LLM Slop is Not Reliable, Constitutes No Process of 'Thinking'; There's No Thought Process at All, No Grasp or Understanding, Let Alone Context
- Lies have become the "business model" [...] More people ought to talk about it and explain to other people what LLMs really are
- Not a Security Expert If You Cannot Manage to Keep Online a Simple Two-User Mastodon Instance Somebody Else Built
- From uptime of ~99% to maybe 80%
- Microsoft Has All the Symptoms of a Dying Company (Mass Layoffs of the People Who Built the Company)
- the company's debt is going through the ceiling
- Focus is Important, Focus is Everything
- We are still running 6 multi-part series in tandem
- For Effective 'Finlandisation' (Not Digital Sovereignty) to Be Replaced by Autonomy Finland Needs to Think Like GNU (Software Freedom), Not Linux (Openwashing Source, Plus LLM Slop and Killswitches)
- What is 'Finlandisation'?
- Guest Post on False Marketing and PR Blitzes by Anthropic
- A lot of people my age are just tired of the nonsense
- Links 15/05/2026: UK antitrust regulator is officially investigating Microsoft Office, Anthropic’s Fraudulent Lies About Mythoslop Don't Withstand Scrutiny
- Links for the day
- IBM's Kyndryl in Trouble: Mass Layoffs, Payroll Problems, Buybacks (in Company Whose Debt is Almost Twice Its Total Value), and Soon $9 Per Share (Down Over 80%)
- Kyndryl is done. Stick a fork in it.
- ICYMI: GNU/Linux Did Not Start in Finland
- If we're honest/true to ourselves, we need to recognise history for what it is, not what some corporations (like GAFAM) want it to be
- IBM is Googlebombing the Media With Fake Numbers to Promote Fake Technology
- a classic example of why much of today's media cannot be trusted (anymore)
- Up to 10,000 Microsoft Layoffs in a Couple of Months
- Many ways to skin a cat
- Truth Hurts. People Hurt by Truth Aren't Entitled to Compensation.
- Family members aren't exempt
- SLAPP Censorship - Part 77 Out of 200: They Never Knew How to Handle Women (Except to Attack Them)
- The case against us was really quite simple
- Update on Sirius Open Source in 2026 (When Your Former Employer Commits Crimes and Nobody is Held Accountable)
- I did not envision myself spending several years (even 4 years after leaving that company) challenging the system for tolerating and even covering up corruption
- Codecs and Software Patents - Part VII - Entering Phase II, the Battle Against Companies That Normalise Taxed (by Patents on Mathematics) Codecs
- In the next few part we'll deal with the impact on Free software, including the GNU Project
- The Corrupt Lecture the Non-Corrupt - Part XXIII - Cocaine Use at the EPO's Top-Level Management "Adds Up" and Worsens Things "Over Time"
- "cocaine use knocks the IQ down permanently a tiny bit with each use. Over time that adds up."
- Gemini Links 15/05/2026: Slop Fatigue and Banning LLM Use
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Thursday, May 14, 2026
- IRC logs for Thursday, May 14, 2026