Powered by Max Banner Ads 

Sometimes spending the extra work hours pays off. Actually I kind of get into a groove after searching and things come easily… that is until my wife phones me up!

Anyway, I was investigating a site and checked its source code for anything of interest.

There was a strange link pointing to a gif file that I decided to follow.

link1

It took me to this page, a nice little repository of malicious pages pushing fake video codecs:

oymoma-tube.freehostia.com

link21

As you can see, some of the pages have just been updated today, while others are a little older.

Here are some examples of the pages hosted there. They also have redirect links to other malware sites.

link3

link4

Jerome Segura

And for our partners, I’ve uploaded to our FTP share some of the samples I could grab.

Malware ID: 0d23a0aa75658d81698c727261503628.zip

Malware ID: 6d3b3cd07df5db7f4512a503ace750ac.zip

Malware ID: da3f8fc504e1a640fbc0ae8da568dec7.zip

Malware ID: ee222a68e35225115a1dceac34026ab6.zip

Share and Enjoy:
  • Digg
  • Bumpzee
  • del.icio.us
  • Facebook
  • Furl
  • Mixx
  • NewsVine
  • Reddit
  • StumbleUpon
  • YahooMyWeb
  • Google Bookmarks

Related posts:

  1. Malware Repo Gets Updated  Powered by Max Banner Ads This is an update from...
  2. No Perestroika for Fake Codecs  Powered by Max Banner Ads A rather generous catalog of...
  3. Fake Youtube Pages and Seekmo  Powered by Max Banner Ads Fake Youtube pages are normally...
  4. New Fake Alert Trojan  Powered by Max Banner Ads The following site, besttubeamp.com, pushes...
  5. Fake Windows 7 Serial Generators  Powered by Max Banner Ads Just a tip, we’re seeing...

Related posts brought to you by Yet Another Related Posts Plugin.