<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Adtools &#187; Malware</title>
	<atom:link href="http://blog.adtools.co.uk/category/malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.adtools.co.uk</link>
	<description>Advertising Operations &#38; Technology</description>
	<lastBuildDate>Fri, 25 Nov 2011 13:21:30 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Massive Blackhat SEO Malware Campaign Launched</title>
		<link>http://blog.adtools.co.uk/massive-blackhat-seo-malware-campaign-launched/903/</link>
		<comments>http://blog.adtools.co.uk/massive-blackhat-seo-malware-campaign-launched/903/#comments</comments>
		<pubDate>Thu, 27 Jan 2011 10:30:12 +0000</pubDate>
		<dc:creator>Sean</dc:creator>
				<category><![CDATA[AdOps]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Misc]]></category>
		<category><![CDATA[Quality Assurance]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[blackhat]]></category>
		<category><![CDATA[blacklist]]></category>
		<category><![CDATA[securehomenetwork]]></category>
		<category><![CDATA[SEO]]></category>

		<guid isPermaLink="false">http://blog.adtools.co.uk/?p=903</guid>
		<description><![CDATA[The excellent malwaredomains.com highlights a story coming from James McQuaid at securehomenetwork.blogspot.com about a potential huge malware attack. The article describes a huge SEO malware campaign utilizing thousands of machine-generated domains combining black hat SEO poisoning with virulent malware infections. http://securehomenetwork.blogspot.com/2011/01/massive-blackhat-seo-malware-campaign.html It occurs to me that the timing is very apt. As we head towards [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.adtools.co.uk/massive-blackhat-seo-malware-campaign-launched/903/evil-customer/" rel="attachment wp-att-904"><img src="http://blog.adtools.co.uk/wp-content/uploads/2011/01/evil-customer-150x150.jpg" alt="" title="evil-customer" width="150" height="150" class="alignright size-thumbnail wp-image-904" /></a>The excellent <a href="http://www.malwaredomains.com/wordpress/?p=1584">malwaredomains.com</a> highlights a story coming from James McQuaid at <a href="http://securehomenetwork.blogspot.com">securehomenetwork.blogspot.com</a> about a potential huge malware attack. The article describes a huge SEO malware campaign utilizing thousands of machine-generated domains combining  black hat SEO poisoning with virulent malware infections.<br />
<a href="http://securehomenetwork.blogspot.com/2011/01/massive-blackhat-seo-malware-campaign.html">http://securehomenetwork.blogspot.com/2011/01/massive-blackhat-seo-malware-campaign.html</a></p>
<p>It occurs to me that the timing is very apt. As we head towards the end of the first month of 2011, sales teams will be frantically ensuring they are hitting their targets. It is an unfortunate situation but in such times due-diligence can be easily sidelined in the frantic dash to secure revenue for those last closing days of the month. So, if you&#8217;re seeing any new accounts suddenly appearing trying to force their way past your normally thorough screening process&#8230; be careful.</p>
<p>				<!-- Social Sharing Toolkit v2.0.4 | http://www.marijnrongen.com/wordpress-plugins/social_sharing_toolkit/ --></p>
<div class="mr_social_sharing_wrapper"><span class="mr_social_sharing_top"><iframe src="https://www.facebook.com/plugins/like.php?locale=en_US&amp;href=http%3A%2F%2Fblog.adtools.co.uk%2Fmassive-blackhat-seo-malware-campaign-launched%2F903%2F&amp;layout=standard&amp;show_faces=false&amp;width=51px&amp;height=24px" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:51px; height:24px;" allowTransparency="true"></iframe></span><span class="mr_social_sharing_top"><a href="http://twitter.com/share?url=http%3A%2F%2Fblog.adtools.co.uk%2Fmassive-blackhat-seo-malware-campaign-launched%2F903%2F&amp;text=Massive+Blackhat+SEO+Malware+Campaign+Launched&amp;via=adops" target="_blank" class="mr_social_sharing_popup_link"><img src="http://blog.adtools.co.uk/wp-content/plugins/social-sharing-toolkit/images/buttons/twitter.png" alt="Share on Twitter" title="Share on Twitter"/></a></span><span class="mr_social_sharing_top"><g:plusone size="medium" count="false" href="http://blog.adtools.co.uk/massive-blackhat-seo-malware-campaign-launched/903/"></g:plusone></span><span class="mr_social_sharing_top"><script type="IN/Share" data-url="http://blog.adtools.co.uk/massive-blackhat-seo-malware-campaign-launched/903/"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.adtools.co.uk/massive-blackhat-seo-malware-campaign-launched/903/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The requested object is infected with the virus Trojan.JS.Redirector.ar &#8211; false alarm by Kaspersky Lab products on some Google web pages</title>
		<link>http://blog.adtools.co.uk/the-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages/392/</link>
		<comments>http://blog.adtools.co.uk/the-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages/392/#comments</comments>
		<pubDate>Tue, 26 Jan 2010 13:26:38 +0000</pubDate>
		<dc:creator>Sean</dc:creator>
				<category><![CDATA[Adsense]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Misc]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://blog.adtools.co.uk/?p=392</guid>
		<description><![CDATA[Kaspersky is reporting that it&#8217;s AntiVirus solution is flagging Google Adsense ads as being infected with the virus Trojan.JS.Redirector.ar but which in fact are false-positives. The error message looks like this &#8220;The requested object is infected with the virus Trojan.JS.Redirector.ar&#8221; Here&#8217;s what they have to say about the mater: &#8220;Kaspersky Lab acknowledges a false positive [...]]]></description>
			<content:encoded><![CDATA[<p>Kaspersky is reporting that it&#8217;s AntiVirus solution is flagging Google Adsense ads as being infected with the virus Trojan.JS.Redirector.ar but which in fact are false-positives. The error message looks like this &#8220;<em>The requested object is infected with the virus Trojan.JS.Redirector.ar</em>&#8221;</p>
<p>Here&#8217;s what they have to say about the mater:<br />
&#8220;Kaspersky Lab acknowledges a false positive returned by its products for a number of Internet resources with Google contextual advertising.</p>
<p>An incorrect signature was added to the company’s antivirus databases on 25 January at 07:00 Moscow time (GMT+3). As a result, Kaspersky Lab products erroneously blocked some legitimate websites containing the link on script http://pagead2.googlesyndication.com/pagead/show_ads.js, which is used in the contextual advertising system Google AdSense. When users visited an affected web resource, a message was displayed stating that the page contained the malicious program Trojan.JS.Redirector.ar.&#8221;</p>
<p><img src="http://blog.adtools.co.uk/wp-content/uploads/2010/01/3201en2.gif" alt="3201(en)2" title="3201(en)2" width="338" height="441" class="aligncenter size-full wp-image-397" /></p>
<p>Links:<br />
<a href="http://support.kaspersky.com/kis2010/error?qid=208281219">http://support.kaspersky.com/kis2010/error?qid=208281219</a><br />
<a href="http://news.softpedia.com/news/Kaspersky-Says-Google-Spreads-Malware-but-Trojan-JS-Redirector-ar-Is-a-False-Positive-133118.shtml">http://news.softpedia.com/news/Kaspersky-Says-Google-Spreads-Malware-but-Trojan-JS-Redirector-ar-Is-a-False-Positive-133118.shtml</a><br />
				<!-- Social Sharing Toolkit v2.0.4 | http://www.marijnrongen.com/wordpress-plugins/social_sharing_toolkit/ --></p>
<div class="mr_social_sharing_wrapper"><span class="mr_social_sharing_top"><iframe src="https://www.facebook.com/plugins/like.php?locale=en_US&amp;href=http%3A%2F%2Fblog.adtools.co.uk%2Fthe-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages%2F392%2F&amp;layout=standard&amp;show_faces=false&amp;width=51px&amp;height=24px" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:51px; height:24px;" allowTransparency="true"></iframe></span><span class="mr_social_sharing_top"><a href="http://twitter.com/share?url=http%3A%2F%2Fblog.adtools.co.uk%2Fthe-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages%2F392%2F&amp;text=The+requested+object+is+infected+with+the+virus+Trojan.JS.Redirector.ar+%E2%80%93+false+alarm+by+Kaspersky+Lab+products+on+some+Google+web+pages&amp;via=adops" target="_blank" class="mr_social_sharing_popup_link"><img src="http://blog.adtools.co.uk/wp-content/plugins/social-sharing-toolkit/images/buttons/twitter.png" alt="Share on Twitter" title="Share on Twitter"/></a></span><span class="mr_social_sharing_top"><g:plusone size="medium" count="false" href="http://blog.adtools.co.uk/the-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages/392/"></g:plusone></span><span class="mr_social_sharing_top"><script type="IN/Share" data-url="http://blog.adtools.co.uk/the-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages/392/"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.adtools.co.uk/the-requested-object-is-infected-with-the-virus-trojan-js-redirector-ar-false-alarm-by-kaspersky-lab-products-on-some-google-web-pages/392/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

