<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: &#8216;Regarding your Friendster password&#8217; themed emails lead to Black Hole exploit kit</title>
	<atom:link href="http://blog.webroot.com/2012/10/19/regarding-your-friendster-password-themed-emails-lead-to-black-hole-exploit-kit/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.webroot.com/2012/10/19/regarding-your-friendster-password-themed-emails-lead-to-black-hole-exploit-kit/</link>
	<description>WEBROOT - INSIGHTS INTO THREATS AND TRENDS FROM OUR INTERNET SECURITY EXPERTS</description>
	<lastBuildDate>Fri, 17 May 2013 20:44:03 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: Bogus &#8216;End of August Invoices&#8217; themed emails serve malware and client-side exploits &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/19/regarding-your-friendster-password-themed-emails-lead-to-black-hole-exploit-kit/#comment-89316</link>
		<dc:creator><![CDATA[Bogus &#8216;End of August Invoices&#8217; themed emails serve malware and client-side exploits &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Fri, 30 Nov 2012 19:00:43 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8309#comment-89316</guid>
		<description><![CDATA[[...] &#8211; seen in &#8211; &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8220;; &#8220;‘Fwd: Scan from a Xerox W. Pro’ themed emails lead to Black Hole Exploit [...]]]></description>
		<content:encoded><![CDATA[<p>[...] &#8211; seen in &#8211; &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8220;; &#8220;‘Fwd: Scan from a Xerox W. Pro’ themed emails lead to Black Hole Exploit [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bogus &#8216;Intuit Software Order Confirmations&#8217; lead to Black Hole Exploit Kit &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/19/regarding-your-friendster-password-themed-emails-lead-to-black-hole-exploit-kit/#comment-89282</link>
		<dc:creator><![CDATA[Bogus &#8216;Intuit Software Order Confirmations&#8217; lead to Black Hole Exploit Kit &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Fri, 30 Nov 2012 15:12:04 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8309#comment-89282</guid>
		<description><![CDATA[[...] emails lead to Black Hole Exploit Kit&#8220; limonadiksec.ru &#8211; seen in &#8211; &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8220;; &#8220;‘Fwd: Scan from a Xerox W. Pro’ themed emails lead to Black Hole Exploit [...]]]></description>
		<content:encoded><![CDATA[<p>[...] emails lead to Black Hole Exploit Kit&#8220; limonadiksec.ru &#8211; seen in &#8211; &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8220;; &#8220;‘Fwd: Scan from a Xerox W. Pro’ themed emails lead to Black Hole Exploit [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Multiple &#8216;Inter-company&#8217; invoice themed campaigns serve malware and client-side exploits &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/19/regarding-your-friendster-password-themed-emails-lead-to-black-hole-exploit-kit/#comment-88444</link>
		<dc:creator><![CDATA[Multiple &#8216;Inter-company&#8217; invoice themed campaigns serve malware and client-side exploits &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Tue, 27 Nov 2012 07:35:33 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8309#comment-88444</guid>
		<description><![CDATA[[...] The first sample obtained from the attached archive, MD5: 03f5311ef1b9f7f09f6e13ff9599f367- is detected by 40 out of 44 antivirus scanners as Worm:Win32/Cridex.E. Upon execution the sample phones back to 95.142.167.193:8080/mx/5/A/in/ (AS29169). We&#8217;ve seen another malware campaign also phoning back to the same IP &#8211; &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8220;. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] The first sample obtained from the attached archive, MD5: 03f5311ef1b9f7f09f6e13ff9599f367- is detected by 40 out of 44 antivirus scanners as Worm:Win32/Cridex.E. Upon execution the sample phones back to 95.142.167.193:8080/mx/5/A/in/ (AS29169). We&#8217;ve seen another malware campaign also phoning back to the same IP &#8211; &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8220;. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#8216;Fwd: Scan from a Xerox W. Pro&#8217; themed emails lead to Black Hole Exploit Kit &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World</title>
		<link>http://blog.webroot.com/2012/10/19/regarding-your-friendster-password-themed-emails-lead-to-black-hole-exploit-kit/#comment-82364</link>
		<dc:creator><![CDATA[&#8216;Fwd: Scan from a Xerox W. Pro&#8217; themed emails lead to Black Hole Exploit Kit &#171; Webroot Threat Blog &#8211; Internet Security Threat Updates from Around the World]]></dc:creator>
		<pubDate>Wed, 07 Nov 2012 07:01:48 +0000</pubDate>
		<guid isPermaLink="false">http://blog.webroot.com/?p=8309#comment-82364</guid>
		<description><![CDATA[[...] already seen one of these domains (sonatanamore.ru) used in the recently profiled &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8221; campaign, indicating that these campaigns have been launched by the same malicious [...]]]></description>
		<content:encoded><![CDATA[<p>[...] already seen one of these domains (sonatanamore.ru) used in the recently profiled &#8220;‘Regarding your Friendster password’ themed emails lead to Black Hole exploit kit&#8221; campaign, indicating that these campaigns have been launched by the same malicious [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
