Saturday, October 04, 2003

You Are Romans
You are Romans.


Which book of the Bible are you?
brought to you by Quizilla
This is more me.
Athena
Athena


?? Which Of The Greek Gods Are You ??
brought to you by Quizilla
Not that I beliive this stuff mind you!
Yahoo! News - Groups Unveil Anti-Schwarzenegger Ads
Where were all these stories a month ago.. dang, people are desperate in California

Friday, October 03, 2003

Virus News seems to have died for a while but now seems to be back with a vengence. Or maybe because I get RSS feeds from Sophos and Trend I can keep track of them. Most appear low risk, but do not take low risk to mean no risk. Practice safe Hex.

New From Sophos
Troj/Hackarmy-A (IRC Backdoor)

New From Trend
HKTL_MRC.A (users of DameWare Mini Remote Control )
TROJ_ZAB.A (Linux)
TROJ_LEMIR.E (Windows 95, 98, ME, NT, 2000, XP)
DDOS_KEKE.A (DDoS Tool Windows)
TROJ_ISTBAR.A Internet Explorer (IE) toolbar Payload 1: Changes Internet Explorer startup page Payload 2: Adds adult-oriented links in the Favorites folder Payload 3: Modifies Files Downloads several softwares/utilities
VBS_VAGS.A (low risk high destruction) Payload 1: Clears desktop of all icons and hides icons Trigger Condition 1: When the current system date is set at September 19 Payload 2: Overwrites files Trigger Condition 1: When the current system date is set at September 19
TROJ_LEMIR.F(password stealer for game)
TROJ_VARDO.A
WORM_AGOBOT.AD (weak passwords allow it in, kills antivirus and firewall software running)
WORM_OPASERV.AD
Another new one:
WORM_DELFER.A RISK:LOW Buggy code

Thursday, October 02, 2003

Do you really own your PC? | CNET News.com
From rend Micro These new viruses
vbs-taber.a risk:low
vbs-riosys.a risk:low
v97m_riosys.a risk:low word macro)
bkdr_graybird.g risk:low
scythe.d risk medium master book record infector (een a while to see one of those)
bjdr_sdbot.y risk:low
XF_SIC.A (also reporte below from Sophhos) risk low Information on the Macro
Payloads
When an infected document is accessed at exactly 11:30 AM, this macro virus displays the character string:
>?.
When an infected document is accessed at exactly 5:00 PM, it displays the following characters:
!?.
Other Details
This virus may cause the following string to be displayed on the Microsoft Excel status bar:
!!!!

BKDR_SDBOT.AX risk:low
W97M_SHORE.I risk:low (Word 95/97)
HIGHLANDER.Z risk:low (executable file virus infects com files)

Update the signatures.
New Virus as of 5:12 AM today:
XF97/Wisab-A
XF97/Wisab-A spreads using a Formula Sheet called XL4Test5. The virus creates a file in the XLSTART directory called BOOK1.
Information from Sophos
OpenOffice.org
Open Office has new release. Want to download and see what is new, but afraid I will just be able to download it. Way too much work to do. This feature looks nice
OpenOffice.org 1.1 introduces the one-click PDF export feature that enables you to easily create PDF files without the need for any additional third party software. This feature makes exchanging documents in a standard "read-only" file format a trivial task. The creation of PDF files normally requires relatively expensive third party add-on tools. With OpenOffice.org this feature comes for free.
And another feature:
OpenOffice.org now can export presentations and drawings to the Macromedia Flash format (.swf). Thus, it's now possible to view presentations in a simple web browser that has the Flash plugin installed. Recipients and users of Flash presentations don't have to install a special viewer anymore in order to view a presentation.
Complete list of features http://www.openoffice.org/dev_docs/features/1.1/features-text.html
Top 10 Viruses for the month of August 2003 according to Sophos
Position       Last month       Virus                Percentage of reports
1                   New                W32/Gibe-F         23.5%
2                      9                   W32/Dumaru-A    18.1%
3                      4                   W32/Mimail-A       15.0%
4                      1                   W32/Sobig-F        5.6%
5                      3                   W32/Nachi-A       5.5%
6                      10                 W32/Sobig-A       4.4%
7                         7                 W32/Bugbear-B   2.9%
8=                      6                   W32/Klez-H           2.7%
8=                      2                   W32/Blaster-A       2.7%
10                   Re-entry          W32/Parite-B          1.3%

Others 18.3%

Wednesday, October 01, 2003

MIT OpenCourseWare | OCW Home
What is that, you say you want to go to MIT but you can not afford it, then let MIT come to you for free.

Tuesday, September 30, 2003