Sunday, December 14, 2008
VNB Malicious Exploits
Hey all!

Xianhao posting. It has come to out notice that the blogskin "Si Meh and 6 Gracious", was found to have malicious scripting exploits.

Here the report from McAFee:

Reported Attack Site!
This web site at vnb6g.blogspot.com has been reported as an attack site and has been blocked based on your security preferences.
Attack sites try to install programs that steal private information, use your computer to attack others, or damage your system.

Some attack sites intentionally distribute harmful software, but many are compromised without the knowledge or permission of their owners.

--REPORT--

What is the current listing status for vnb6g.blogspot.com?

Site is listed as suspicious - visiting this web site may harm your computer.

Part of this site was listed for suspicious activity 1 time(s) over the past 90 days.

What happened when Google visited this site?

Of the 5 pages we tested on the site over the past 90 days, 1 page(s) resulted in malicious software being downloaded and installed without user consent. The last time Google visited this site was on 2008-12-12, and the last time suspicious content was found on this site was on 2008-12-12.

Malicious software includes 4 scripting exploit(s). Successful infection resulted in an average of 1 new processes on the target machine.

Malicious software is hosted on 1 domain(s), including tag-world.com/.

This site was hosted on 1 network(s) including AS15169 (GOOGLE).

Has this site acted as an intermediary resulting in further distribution of malware?

Over the past 90 days, vnb6g.blogspot.com did not appear to function as an intermediary for the infection of any sites.

Has this site hosted malware?

No, this site has not hosted malicious software over the past 90 days.

How did this happen?

In some cases, third parties can add malicious code to legitimate sites, which would cause us to show the warning message.

Next steps:

The malicious exploits appear to be from the script itself, and the host domain - tagworld.com

To prevent more computer from infecting this malicious, we have decided to remove this blogskin and analysis it before we put it up again.

Although this malicious is not very serious, it is recommended that all systems with virus protection software to run a full virus check and quarantine any related virus. For those who don't have a virus protection software, you may use free scans provided by:

1. Trend Micro HouseCall - http://housecall.trendmicro.com/
2. Kaspersky Lab: Virus Scan - http://www.kaspersky.com/virusscanner
3. Symantec Norton Free Virus Scan - http://security.symantec.com/sscv6/WelcomePage.asp
4. AVG Free - http://free.avg.com/
5. Microsoft Live OneCare safety scanner - http://onecare.live.com/site/en-us/default.htm

So far, Nicole has reported to me that trojan horse could be found on this blogskin. (Don't know if it is true or not~)



Thank you for your kind attention

Thursday, December 4, 2008
A BBQ PARTY AT MY HOUSE
WARNING: THERE WILL BE HONG KONG SLANG USED(OF COUSE GE)! CAUSE I HAVE BEEN HERE A LONG TIME*snigger*ZE.

erm...erm...well...pls bring me a cup of water.......ok.......here goes...................................:
Hi everybody, this is my first post here so i am not so sure what to put.

Hello people, I am trying to organize a barbecue for the class on the 26 December (6pm-10pm) at the Barbecue Pit at Yishun Sapphire. It will be a potluck BBQ meaning each of us, including me, will prepare a food item for the barbecue. I will book the barbecue pit on the 26 December.

Pls reply ASAP so I can proceed to plan after I have the total number of people coming.

Besides, I will forward you guys whose email I have or you also can email me at latiaspkj@hotmail.com to request me to send you’re a list of food items for the BBQ and each of you can decide what you would like to bring for the party and let me know ok?

Thanks
Reporter: Kai Jun