<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: &#8216;Intuit Payroll Confirmation inquiry&#8217; themed emails lead to the Black Hole exploit kit</title>
	<atom:link href="http://blog.webroot.com/2012/10/18/intuit-payroll-confirmation-inquiry-themed-emails-lead-to-the-black-hole-exploit-kit/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.webroot.com/2012/10/18/intuit-payroll-confirmation-inquiry-themed-emails-lead-to-the-black-hole-exploit-kit/</link>
	<description>WEBROOT - INSIGHTS INTO THREATS AND TRENDS FROM OUR INTERNET SECURITY EXPERTS</description>
	<lastBuildDate>Thu, 23 May 2013 07:00:37 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: Fake Payroll Confirmation Email Leads to Black Hole Exploit Kit &#124; Threatpost</title>
		<link>http://blog.webroot.com/2012/10/18/intuit-payroll-confirmation-inquiry-themed-emails-lead-to-the-black-hole-exploit-kit/#comment-116507</link>
		<dc:creator><![CDATA[Fake Payroll Confirmation Email Leads to Black Hole Exploit Kit &#124; Threatpost]]></dc:creator>
		<pubDate>Mon, 25 Mar 2013 02:47:36 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8295#comment-116507</guid>
		<description><![CDATA[[...] The various malicious domains used in the campaign responded to the same set of IP addresses. You can find a list of the malicious URLs in Danchev’s write-up. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] The various malicious domains used in the campaign responded to the same set of IP addresses. You can find a list of the malicious URLs in Danchev’s write-up. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cybercriminals resume spamvertising &#8216;Payroll Account Cancelled by Intuit&#8217; themed emails, serve client-side exploits and malware &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/18/intuit-payroll-confirmation-inquiry-themed-emails-lead-to-the-black-hole-exploit-kit/#comment-87151</link>
		<dc:creator><![CDATA[Cybercriminals resume spamvertising &#8216;Payroll Account Cancelled by Intuit&#8217; themed emails, serve client-side exploits and malware &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Thu, 22 Nov 2012 07:00:59 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8295#comment-87151</guid>
		<description><![CDATA[[...] ‘Intuit Payroll Confirmation inquiry’ themed emails lead to the Black Hole exploit kit [...]]]></description>
		<content:encoded><![CDATA[<p>[...] ‘Intuit Payroll Confirmation inquiry’ themed emails lead to the Black Hole exploit kit [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#8216;Payroll Account Holded by Intuit&#8217; themed emails lead to Black Hole Exploit Kit &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/18/intuit-payroll-confirmation-inquiry-themed-emails-lead-to-the-black-hole-exploit-kit/#comment-83239</link>
		<dc:creator><![CDATA[&#8216;Payroll Account Holded by Intuit&#8217; themed emails lead to Black Hole Exploit Kit &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Fri, 09 Nov 2012 07:02:55 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8295#comment-83239</guid>
		<description><![CDATA[[...] ‘Intuit Payroll Confirmation inquiry’ themed emails lead to the Black Hole exploit kit [...]]]></description>
		<content:encoded><![CDATA[<p>[...] ‘Intuit Payroll Confirmation inquiry’ themed emails lead to the Black Hole exploit kit [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BofA &#8216;Online Banking Passcode Reset&#8217; themed emails serve client-side exploits and malware &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/18/intuit-payroll-confirmation-inquiry-themed-emails-lead-to-the-black-hole-exploit-kit/#comment-80200</link>
		<dc:creator><![CDATA[BofA &#8216;Online Banking Passcode Reset&#8217; themed emails serve client-side exploits and malware &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Thu, 01 Nov 2012 07:00:51 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8295#comment-80200</guid>
		<description><![CDATA[[...] used in a previously profiled malicious campaign impersonating Intuit &#8211; &#8220;‘Intuit Payroll Confirmation inquiry’ themed emails lead to the Black Hole exploit kit&#8220;, where the client-side exploit-serving URL (art-london.net) was also registered with the [...]]]></description>
		<content:encoded><![CDATA[<p>[...] used in a previously profiled malicious campaign impersonating Intuit &#8211; &#8220;‘Intuit Payroll Confirmation inquiry’ themed emails lead to the Black Hole exploit kit&#8220;, where the client-side exploit-serving URL (art-london.net) was also registered with the [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
