Thursday, October 11, 2012

Dorkbot Worm Spreading via Skype Instant Messages

SkypeIf you use Skype to stay connected to family and friends, be careful that you do don’t fall for an ongoing malware attack that starts off with an instant message like the one below:

lol is this your new profile pic? http://goo.gl[REMOVED]?img=[USERNAME]

Upon clicking the link, users eventually land on a download page for a file named SKYPE_[TODAY’S DATE].zip, which contains a malicious executable (.exe) file that will install a variant of the Dorkbot worm on the victim’s computer.

Once Dorkbot has been successfully installed on a user’s PC, it will open a backdoor to grant an attacker remote control of the machine. The Dorkbot worm gives attackers the ability to recruit the computer into a botnet & part-take in DDoS attacks, steal login credentials for a variety of websites (Facebook, Twitter, Google, PayPal, Netflix, etc.), inject iFrames into webpages, or download additional malware.

There have been reports that Dorkbot infections may result in the user being locked out of their machine thanks to the worm’s tendency to select ransomware as its choice of additional malware to download. Upon installation, the ransomware will hold the computer hostage until the user forks over a $200 fee.

Given that messages spreading the Dorkbot worm can come from friends on your Skype contact list and not necessarily random strangers, users are urged to remain vigilant when following any links that have been shared with them.

Tips to Keep Your PC Dorkbot-Free



  1. Exercise caution when following shortened links shared via Skype or social network websites. Here are some tips on how you can investigate urls before clicking on them.

  2. Do not download files from unknown or untrusted sources, and don’t forget to scan files before opening them.

  3. If you plug a removable storage device into your PC, be sure to scan it with your antivirus software. Dorkbot – among other pieces of malware – are known to spread via USB thumb drives.

  4. Always run antivirus software & keep the virus definitions up-to-date.



Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+.

Wednesday, October 10, 2012

Can People Find You on Facebook By Searching for Your Phone Number?

Facebook SearchIt’s understandable that anyone who has added their phone number to their Facebook profile and adjusted the privacy setting to “Only me” would assume that the information would be kept private, right?

Well, technically that information is kept hidden. It’s not visible whenever someone clicks your profile and views your information; however, people can STILL FIND YOU by entering your phone number into Facebook’s search bar.

The issue lies with the fact that there’s another privacy setting that seems to overlap the phone number visibility setting under the Contact Info section of your Facebook profile.

The specific setting in question, “Who can look you up using the email address or phone number you provided?” can be found under the “How You Connect” section on the Privacy Settings page. Apparently it is set to “Everybody” by default.

Facebook "How You Connect" Settings

It is recommended that you select one of the other two options, “Friends” or “Friends of Friends” – unless, you know, you don’t mind people performing reverse phone number look-ups on you.

Have you entered your phone number to Facebook? Are you concerned about people searching your phone number on Facebook to find your profile?

[via Sophos]

Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+.

New Ransomware Variants Are Vocal About Their Demands

Ransomware!! Ahhh!!You know what would really suck?

If your computer was infected with ransomware that not only locked you out of your machine, but repeatedly blasted an audio file that states the reason why you’re locked out is because you violated some copyright laws & you’ll have to fork over some cash to regain access to your files.

Oh, wait.... that could totally happen.

For the past few months, cybercriminals have begun increasingly using ransomware to extort money out of unwitting end-users. Typically the user is just shown a message accusing them of anything from illegal file-sharing to viewing child pornography, denied access to use their computer for anything more than an oversized paperweight and instructed to pay a hefty “fine” to regain access.

According to TrendMicro researchers, new variants of ransomware add a “non-malicious” .MP3 file to the mix, which will undoubtedly drive users even more insane as it repeatedly informs them that their system is blocked because they violated federal laws and that they’ll have to pay a $200 fine to make it all go away.

TrendMicro detects the new threats as TROJ_RANSOM.CXB and TROJ_RANSOM.AAF. The message displayed to the end user is shown below:

.mp3-loaded ransomware messageScreenshot Credit: TrendMicro


Removing ransomware varies from infection to infection; it all depends on how the author configured the malware to lock you out.

Regardless how the ransomware operates, users are urged not to pay the cybercrook to have their PC “unlocked.” There’s no guarantee that the cybercriminal will follow through with their promise to unlock your machine, and 9/10 the payment method used eliminates any possibility of retrieving your funds in the event that they don’t keep their word.

Instead, do what you can to prevent the infection in the first place, and if your PC does wind up getting infected, you can either research the removal steps for the specific piece of ransomware on your machine, or take your computer to be repaired by a professional.

How to Keep Your PC Safe from Ransomware



  • Keep your operating system and installed third-party software patched and up-to-date.

  • Always run antivirus software that offers real-time scanning features, and be sure to keep the virus definitions current.

  • If you don’t need or use it, consider removing Java from your computer.

  • Do not download files attached to emails from unknown or untrusted sources.

  • Always remain vigilant and investigate suspicious website links before clicking on them.


Photo Credit: Don Hankins

Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+.

Monday, October 8, 2012

Don't Fall for Delta Air Lines ‘Download Your Ticket’ Spam

Delta Air LinesDid you get an email inviting you to download and print a Delta Air Lines ticket that you don’t recall purchasing?

Don’t worry; you really don’t have a phantom ticket in your name and your credit card hasn’t been dinged for the price of the ticket.

Fact of the matter is, the email is a fake. It didn’t come from Delta Air Lines, but a spammer that is praying you download the attached file to infect your computer with the malware hiding inside.

Delta Air Lines



Subject: You can download your ticket #NR9318
From: Delta Air Lines (aa.support904@deltaa.com)

Order Notification,

ELECTRONIC TICKET NUMBER / EH161213460
SEAT / 34F/ZONE 3
DATE / TIME 9 AUGUST, 2012, 10:45 PM

ARRIVING / Minneapolis
FORM OF PAYMENT / XXXXXX
TOTAL PRICE / 283.28 USD
REF / EK.3658 ST / OK
BAG / 4PC

Please find your ticket attached.
To use your ticket you should print it.

Thank you for your attention.
Delta Air Lines.

According to a VirusTotal scan report, only 2/43 antivirus can detect the malware threat – Mal/BredoZp-B (Sophos) – contained within the  “Delta_A_Ticket_Print_Document_1896.zip” file attached to the email.

Therefore, if you receive an email similar to the one above, it is strongly recommended that you:

  • Do not download or open the attached file.

  • Delete the email immediately.


Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+.

Friday, October 5, 2012

Buy of the Week: APC Back-UPS Pro 1500 for $203!

This offer expired on 10/12/12. See top banner ad for active deals.

APC Back UPS Pro 1500The Back-UPS Pro provides abundant battery backup power, so you can work through medium and extended length power outages. It safeguards your equipment against damaging surges and spikes that travel along utility and data lines.

The Back-UPS Pro also features automatic voltage regulation (AVR), which instantly adjusts high and low voltages to safe levels, so you can work indefinitely during brownouts and overvoltages.

Until October 12th, 2012, you can order an APC Back-UPS Pro 1500 from Hyphenet for only $203, plus shipping!

Specifications for APC Back-UPS Pro 1500

















































MFR#:BR1500G
Device TypeUPS - external
Input VoltageAC 120 V
Output VoltageAC 120 V (50/60 Hz)
Power Capacity865 Watt / 1500 VA
Output Connectors5 x power NEMA 5-15 ( surge )
5 x power NEMA 5-15 ( UPS and surge )
BatteryLead acid
Battery Form FactorPlug-in module
Batteries Qty1
Run Time (Up to)3 min at full load
Warranty3-Year APC Warranty

Don't miss out on this Buy of the Week! Call (619) 325-0990 to order APC Back-UPS Pro 1500 today!


Buy of the Week offer valid through October 12th, 2012.

Note: Shipping and taxes apply.

Looking for something else? Check out our monthly deals or contact us to get a quote on the product you're searching for.
This offer expired on 10/12/12. See top banner ad for active deals.

How Strong is Your Password? [INFOGRAPHIC]

Security LockRarely does a day go by without seeing some article stressing the importance of using strong passwords, yet whenever word hits that there’s been another security breach involving passwords we discover that folks continue to use weak passwords like “123456”, “password”, or “abc13.”

Given the number of password-protected sites people use, it’s no real wonder why users resort to using weak passwords: they’re simply easier to remember. Unfortunately, a password that’s easy to remember can also be easy to crack.

PasswordGenie recently released an infographic that outlines recent password breaches, characteristics of weak passwords,  and timeframes on how long it can take to crack a password. Such information can prove very useful for those wishing to identify what exactly makes a password “weak,” and how to go about creating one that will be tough for cybercriminals to crack.

Check it out:

How Strong is Your Password? [INFOGRAPHIC]

Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+.

New Universal Man-in-the-Browser Attack Efficiently Captures Data in Real-Time

SpyTrusteer researchers have discovered a new “Universal Man-in-the-Browser” (uMitB) attack that is capable of stealing sensitive data entered into not just a single website, but all websites visited by the end-user in real-time.

Unlike traditional Man-in-the-Browser configurations, this new uMitB method “uses ‘generic’ real-time logic on the form submissions” to process the information immediately, allowing cyberthieves to quickly build a database of freshly-stolen information without having to parse the logs and extract the valuable details first.

Such efficiency could come in handy for cybercriminals that operate e-stores selling credit card information since card data stolen in real-time is far more valuable than “stale” information.

Trusteer did not give details as to how they came across this new attack method; however they did share a marketing video promoted by cybercriminals that demonstrates how the uMitB attack works.

As far as keeping data safe from (u)MitB attacks, users are urged to safeguard their machines against malware like ZeuS & SpyEye, both of which use MitB tactics to steal private information like credit card numbers or login credentials.

ZeuS, SpyEye & other MitB malware is often delivered via malicious email attachments, drive-by-downloads, therefore users can protect their PCs by:

  • Keeping their operating system and installed software fully patched & up-to-date.

  • Always running antivirus software and keeping the virus definitions current.

  • Exercising caution when following [shortened] links and checking email – no downloading files from unknown/untrusted sources!


Photo Credit: AJC1


[via Trusteer]

Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+.