<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title></title>
	<atom:link href="http://pandasecurityus.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://pandasecurityus.wordpress.com</link>
	<description></description>
	<lastBuildDate>Thu, 25 Sep 2008 17:57:15 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='pandasecurityus.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title></title>
		<link>http://pandasecurityus.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://pandasecurityus.wordpress.com/osd.xml" title="" />
	<atom:link rel='hub' href='http://pandasecurityus.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Content Migration</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/25/content-migration/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/25/content-migration/#comments</comments>
		<pubDate>Thu, 25 Sep 2008 17:57:15 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[pandalabs]]></category>
		<category><![CDATA[saas]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=477</guid>
		<description><![CDATA[Everyone, The content of this blog will be moving to http://pandalabs.pandasecurity.com. Therefore, you can find new and interesting posts at http://pandalabs.pandasecurity.com or www.pandalabs.com for this point on.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=477&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/25/content-migration/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>
	</item>
		<item>
		<title>Fake YouTube Page Creator &#8211; The Risk</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/15/fake-youtube-page-creator-the-risk/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/15/fake-youtube-page-creator-the-risk/#comments</comments>
		<pubDate>Mon, 15 Sep 2008 17:52:14 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[YouTube]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=471</guid>
		<description><![CDATA[Last week PandaLabs discovered a new tool for creating fake YouTube video pages as a way of deceiving users into installing malware. The vector for infection is similar to many fake codec based malware attacks seen in recent weeks (CNN, MSNBC, etc). The flexibility of this tool allows anyone to direct the fake Adobe Flash update error to any malicious [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=471&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/15/fake-youtube-page-creator-the-risk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/ytube.jpg" medium="image">
			<media:title type="html">ytube</media:title>
		</media:content>
	</item>
		<item>
		<title>Banks are not the only target for phishing</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/12/banks-are-not-the-only-target-for-phishing/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/12/banks-are-not-the-only-target-for-phishing/#comments</comments>
		<pubDate>Fri, 12 Sep 2008 17:30:11 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[equifax]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[moneygram]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=462</guid>
		<description><![CDATA[It&#8217;s not just banks that hackers deploy phishing attacks against; it has been seen that hackers also deploy attacks against other payment processing services such as MoneyGram, Equifax, Western Union, etc as a way of gaining profit through harvesting personal details.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=462&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/12/banks-are-not-the-only-target-for-phishing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/moneygram.jpg?w=450" medium="image">
			<media:title type="html">moneygram</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/equifax1.jpg?w=450" medium="image">
			<media:title type="html">equifax1</media:title>
		</media:content>
	</item>
		<item>
		<title>New Statement of Fees Malspam</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/11/new-statement-of-fees-malspam/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/11/new-statement-of-fees-malspam/#comments</comments>
		<pubDate>Thu, 11 Sep 2008 19:22:39 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[codec]]></category>
		<category><![CDATA[malspam]]></category>
		<category><![CDATA[statement of fees]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=458</guid>
		<description><![CDATA[The Statement of Fees malspam campaign continues today with additional messages containing new Trojans. This round is distributing the W32/Autorun.AFC.worm malware which connects and downloads a file called lspr.exe.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=458&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/11/new-statement-of-fees-malspam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/statement1.jpg?w=450" medium="image">
			<media:title type="html">statement1</media:title>
		</media:content>
	</item>
		<item>
		<title>Attack of the Southwest Airlines Malware</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/11/attack-of-the-southwest-airlines-malware/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/11/attack-of-the-southwest-airlines-malware/#comments</comments>
		<pubDate>Thu, 11 Sep 2008 19:01:11 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[southwest airlines]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=453</guid>
		<description><![CDATA[There is another round of spam messages claiming to be a ticket receipt for Southwest Airlines. The message attempts to entice the user into opening an attachment containing the electronic ticket which is actually malware classified as W32/Autorun.AEL.worm. The ploy here is the note that the ticket reservation system has changed and that an account has [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=453&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/11/attack-of-the-southwest-airlines-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/southwest.jpg?w=450" medium="image">
			<media:title type="html">southwest</media:title>
		</media:content>
	</item>
		<item>
		<title>Lloyds TSB Scam: Updated Terms and Conditions</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/09/lloyds-tsb-scam-updated-terms-and-conditions/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/09/lloyds-tsb-scam-updated-terms-and-conditions/#comments</comments>
		<pubDate>Tue, 09 Sep 2008 17:48:31 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[antimalware]]></category>
		<category><![CDATA[code]]></category>
		<category><![CDATA[lloyds tsb]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[Virus]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=435</guid>
		<description><![CDATA[Recently we have noticed several email messages claiming to come from Lloyds TSB a London, UK based financial entity informing customers that they are required to login and accept an updated terms and conditions, otherwise their account will be suspended. The messages appear to be coming from noreply@illoydstsb.com; however, when further analysis is done on [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=435&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/09/lloyds-tsb-scam-updated-terms-and-conditions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/loyd1.jpg?w=449" medium="image">
			<media:title type="html">loyd1</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/loyds2.jpg?w=450" medium="image">
			<media:title type="html">loyds2</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/loyds31.jpg?w=450" medium="image">
			<media:title type="html">loyds31</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/loyds4.jpg?w=450" medium="image">
			<media:title type="html">loyds4</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/loyds6.jpg?w=450" medium="image">
			<media:title type="html">loyds6</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/loyds7.jpg?w=450" medium="image">
			<media:title type="html">loyds7</media:title>
		</media:content>
	</item>
		<item>
		<title>Fake Antimalware Applications</title>
		<link>http://pandasecurityus.wordpress.com/2008/09/08/fake-antimalware-applications/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/09/08/fake-antimalware-applications/#comments</comments>
		<pubDate>Mon, 08 Sep 2008 20:28:13 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[anti-malware]]></category>
		<category><![CDATA[anti-virus XP 2008]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[malspam]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=431</guid>
		<description><![CDATA[As we have been monitoring the threat landscape during the last couple of weeks we have noticed an increase in fake anti-malware applications being used to defraud users. While these applications themselves do not provide any level of security for the user in terms of detecting and removing malware; the application itself is designed to trick the user into [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=431&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/09/08/fake-antimalware-applications/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/09/popup.jpg?w=450" medium="image">
			<media:title type="html">popup</media:title>
		</media:content>
	</item>
		<item>
		<title>New Celebrity Spam &#8211; Fake Security Product Installed (AV XP 2008)</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/28/new-celebrity-spam-fake-security-product-installed-av-xp-2008/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/28/new-celebrity-spam-fake-security-product-installed-av-xp-2008/#comments</comments>
		<pubDate>Thu, 28 Aug 2008 16:27:40 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[AV XP 2008]]></category>
		<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[john mccain]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[malspam]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[paris hilton]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=416</guid>
		<description><![CDATA[This morning the Celebrity spam campaign continued with a few new fake video codec sites delivering a downloader Trojan designed to install a fake security product known as AntiVirus XP 2008. It&#8217;s apparent now that a number of these spam campaigns are only interested solely in distributing this one particular fake security product. The file downloaded is called video99.exe [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=416&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/28/new-celebrity-spam-fake-security-product-installed-av-xp-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/codecnew1.jpg" medium="image" />

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/codecsite3.jpg" medium="image" />
	</item>
		<item>
		<title>Fake Windows XP Vista Update &#8211; Installs AV XP 2008</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/28/fake-windows-xp-vista-update-installs-av-xp-2008/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/28/fake-windows-xp-vista-update-installs-av-xp-2008/#comments</comments>
		<pubDate>Thu, 28 Aug 2008 16:20:46 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[AV XP 2008]]></category>
		<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[anti-malware]]></category>
		<category><![CDATA[anti-virus XP 2008]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[malicous code]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=411</guid>
		<description><![CDATA[This morning the AV XP 2008 spammers were at it again with another round of spam messages claiming to offer an update to Microsoft Windows Vista (we have seen similar attacks before offering false updates). However, when the user clicks the link he/she is directed to a malicious .swf that will download the file install.exe which essentially [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=411&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/28/fake-windows-xp-vista-update-installs-av-xp-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/vistaupdate.jpg" medium="image" />

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/updatexp2.jpg" medium="image" />
	</item>
		<item>
		<title>Statement of Fees Malspam Campaign (AV XP 2008)</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/28/statement-of-fees-malspam-campaign-av-xp-2008/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/28/statement-of-fees-malspam-campaign-av-xp-2008/#comments</comments>
		<pubDate>Wed, 27 Aug 2008 20:58:36 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[analysis]]></category>
		<category><![CDATA[anti-virus XP 2008]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[malspam]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=400</guid>
		<description><![CDATA[A couple of minutes ago another round of spam messages appeared claiming to provide information concerning a statement of fees recently posted (inferring to banking account fees). The message contained an attachment with a fake Microsoft Word Document which actually is an executable (Fees-2008_2009.doc.exe) that installs a Trojan Downloader. Further analysis indicates that the Trojan [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=400&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/28/statement-of-fees-malspam-campaign-av-xp-2008/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/fees2.jpg" medium="image" />

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/fees.jpg" medium="image" />
	</item>
		<item>
		<title>New Fake Video Site distributing AV XP 2008</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/27/new-fake-video-site-distributing-av-xp-2008/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/27/new-fake-video-site-distributing-av-xp-2008/#comments</comments>
		<pubDate>Wed, 27 Aug 2008 17:05:44 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[anti-virus XP 2008]]></category>
		<category><![CDATA[CNN alerts]]></category>
		<category><![CDATA[malspam]]></category>
		<category><![CDATA[products]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=393</guid>
		<description><![CDATA[Spammers continue their efforts today with another round of celebrity oriented spam designed to entice users into watching a non-existent video. The fake video site exhibits the same behavior found in the CNN and MSNBC spam attacks covered earlier this month (i.e. a popup message indicates that the ActiveX movie control is out of date and the user is [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=393&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/27/new-fake-video-site-distributing-av-xp-2008/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/codecsite.jpg" medium="image" />
	</item>
		<item>
		<title>Fake Nero Anti-Virus Pro 2009 (AV XP 2008)</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/25/fake-nero-anti-virus-pro-2009-av-xp-2008/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/25/fake-nero-anti-virus-pro-2009-av-xp-2008/#comments</comments>
		<pubDate>Sun, 24 Aug 2008 21:13:45 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[antivirus xp 2008]]></category>
		<category><![CDATA[CNN alerts]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[malcode]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[msnbc]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=387</guid>
		<description><![CDATA[This morning we detected another spam campaign with the aim of enticing users into downloading and executing a file they believe is a 6 month trial of a product called &#8220;Anti-Virus Nero Advanced Pro 2009&#8220;. When analyzed further the file is actually a variation of the rouge antivirus application known as AV XP 2008 which has been [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=387&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/25/fake-nero-anti-virus-pro-2009-av-xp-2008/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/neroav.jpg" medium="image" />
	</item>
		<item>
		<title>Celebrity Spam out of control</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/22/celebrity-spam-out-of-control/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/22/celebrity-spam-out-of-control/#comments</comments>
		<pubDate>Fri, 22 Aug 2008 17:01:45 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[file]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[paris hilton]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[stream.exe]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=378</guid>
		<description><![CDATA[We have been tracking a number of spam messages over the last couple of days pertaining to celebrities involved in a number of odd and unexplained activities. The binary file being delivered in this latest spam run involving Paris Hilton is stream.exe which is meant to lure a user into executing the file hidden behind [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=378&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/22/celebrity-spam-out-of-control/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/philtonspam.jpg?w=450" medium="image" />
	</item>
		<item>
		<title>Fake Anti-Virus Spam</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/21/fake-anti-virus-spam/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/21/fake-anti-virus-spam/#comments</comments>
		<pubDate>Thu, 21 Aug 2008 15:48:55 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[Malware analysis]]></category>
		<category><![CDATA[antivirus xp 2008]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Virus]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=358</guid>
		<description><![CDATA[This morning we detected another malspam campaign this time focusing on delivering the rouge anti-virus application XP AntiVirus 2008. This particular application has been used numerous times before as the malspam payload to infect users and has been seen in some of the CNN alerts, MSNBC, IE 7.0 attack, etc. The idea here is to trick users [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=358&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/21/fake-anti-virus-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>

		<media:content url="http://pandasecurityus.files.wordpress.com/2008/08/xpav.jpg" medium="image" />
	</item>
		<item>
		<title>Scientific America Industry Panel</title>
		<link>http://pandasecurityus.wordpress.com/2008/08/21/scientific-america-industry-panel/</link>
		<comments>http://pandasecurityus.wordpress.com/2008/08/21/scientific-america-industry-panel/#comments</comments>
		<pubDate>Thu, 21 Aug 2008 01:15:49 +0000</pubDate>
		<dc:creator>Ryan Sherstobitoff</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[scientific america]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[symantec]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[worms]]></category>
		<category><![CDATA[www.sciam.com]]></category>

		<guid isPermaLink="false">http://pandasecurityus.wordpress.com/?p=355</guid>
		<description><![CDATA[This past May I sat on an industry panel regarding digital privacy along with Whitfield Diffie (Sun Micro), Patrick Heim (Kaiser), Art Gilliland (Symantec), Rahul Abhyankar (McAfee), Martin Sadler (HP), John Landwehr (Adobe) and Steve Lipner (Microsoft). The panel discussed many interesting topics around technology and today&#8217;s need for digital privacy. The full edited transcript is available on-line at [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pandasecurityus.wordpress.com&amp;blog=1565706&amp;post=355&amp;subd=pandasecurityus&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://pandasecurityus.wordpress.com/2008/08/21/scientific-america-industry-panel/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fc79db83ed428e4feae0def07e2c265d?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Ryan Sherstobitoff</media:title>
		</media:content>
	</item>
	</channel>
</rss>
