<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>MRG Effitas &#187; News</title>
	<atom:link href="http://malwareresearchgroup.com/category/news/feed/" rel="self" type="application/rss+xml" />
	<link>http://malwareresearchgroup.com</link>
	<description></description>
	<lastBuildDate>Sat, 04 Feb 2012 17:31:29 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=467</generator>
		<item>
		<title>MRG Effitas Online Banking Test Featured on BBC Click</title>
		<link>http://malwareresearchgroup.com/2012/02/04/mrg-effitas-online-banking-test-featured-in-bbc-click/</link>
		<comments>http://malwareresearchgroup.com/2012/02/04/mrg-effitas-online-banking-test-featured-in-bbc-click/#comments</comments>
		<pubDate>Sat, 04 Feb 2012 17:30:15 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4193</guid>
		<description><![CDATA[http://www.youtube.com/watch?v=EUGTlVSefeo]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.youtube.com/watch?v=EUGTlVSefeo">http://www.youtube.com/watch?v=EUGTlVSefeo</a></p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2012/02/04/mrg-effitas-online-banking-test-featured-in-bbc-click/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BBC bases TV programme on MRG Effitas Online Banking Browser Security tests</title>
		<link>http://malwareresearchgroup.com/2012/02/02/bbc-bases-tv-programme-on-mrg-effitas-online-banking-browser-security-tests/</link>
		<comments>http://malwareresearchgroup.com/2012/02/02/bbc-bases-tv-programme-on-mrg-effitas-online-banking-browser-security-tests/#comments</comments>
		<pubDate>Thu, 02 Feb 2012 22:26:37 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4186</guid>
		<description><![CDATA[MRG Effitas has been working with the BBC on a programme which investigates and analyses the impact of financial malware on online banking security. http://www.bbc.co.uk/news/technology-16812064 Chris Pickard, Methodology &#38; Research director of MRG Effitas and CEO of the Effitas Group has &#8230; <a href="http://malwareresearchgroup.com/2012/02/02/bbc-bases-tv-programme-on-mrg-effitas-online-banking-browser-security-tests/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>MRG Effitas has been working with the BBC on a programme which investigates and analyses the impact of financial malware on online banking security.</p>
<p><strong><a href="http://www.bbc.co.uk/news/technology-16812064">http://www.bbc.co.uk/news/technology-16812064</a></strong></p>
<p>Chris Pickard, Methodology &amp; Research director of MRG Effitas and CEO of the Effitas Group has worked with Spencer Kelly, presenter of BBC Click in creating the programme which is to be broadcast worldwide on the BBC News channel on Seturday the 4<sup>th</sup> of February.</p>
<p>The programme features a test by MRG Effitas demonstrating that a custom piece of crimeware is able to bypass a range of security suites and capture the username and password entered in to a banking website.</p>
<p>You can hear Spencer Kelly discussing the upcoming programme here:</p>
<p><strong><a href="http://news.bbc.co.uk/1/hi/programmes/click_online/9692312.stm">http://news.bbc.co.uk/1/hi/programmes/click_online/9692312.stm</a></strong></p>
<p>We will be publishing a follow up report on Saturday to coincide with the broadcast of the programme.</p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2012/02/02/bbc-bases-tv-programme-on-mrg-effitas-online-banking-browser-security-tests/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Largest Cyber Attack Ever?</title>
		<link>http://malwareresearchgroup.com/2012/01/20/largest-cyber-attack-ever/</link>
		<comments>http://malwareresearchgroup.com/2012/01/20/largest-cyber-attack-ever/#comments</comments>
		<pubDate>Fri, 20 Jan 2012 16:23:05 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4174</guid>
		<description><![CDATA[Targets: U.S. Department of Justice, FBI, U.S. Copyright Office, RIAA, Universal Music, Broadcast Music Inc, Motion Picture Association of America&#8230; Damage: Unknown Attacker(s): Hacktivist Group Anonymous]]></description>
			<content:encoded><![CDATA[<p>Targets: <strong>U.S. Department of Justice, FBI, U.S. Copyright Office, RIAA, Universal Music, Broadcast Music Inc, Motion Picture Association of America&#8230;</strong></p>
<p>Damage: <strong>Unknown</strong></p>
<p>Attacker(s): <strong>Hacktivist Group Anonymous</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2012/01/20/largest-cyber-attack-ever/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Crime Diary , January 2012</title>
		<link>http://malwareresearchgroup.com/2012/01/19/cyber-crime-diary-january-2012/</link>
		<comments>http://malwareresearchgroup.com/2012/01/19/cyber-crime-diary-january-2012/#comments</comments>
		<pubDate>Thu, 19 Jan 2012 13:00:40 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4156</guid>
		<description><![CDATA[1. Target: Symantec corp. Damage: Surce code stolen Attacker(s): Dharmaraja group (India) 2. Target: South African Postbank Damage: $6.7 million Attacker(s): Unknown 3. Target: Zappos.com Damage: 24 million customer details compromised Attacker(s): Unknown 4. Target: Japanese Space Agency Damage: Login &#8230; <a href="http://malwareresearchgroup.com/2012/01/19/cyber-crime-diary-january-2012/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p style="text-align: left;"><strong></strong><em><strong>1.</strong> Target:</em> <strong>Symantec corp.</strong><em></em></p>
<p style="text-align: left;"><em>Damage:</em> <strong>Surce code stolen</strong><em></em></p>
<p style="text-align: left;"><em> Attacker(s):</em> <strong>Dharmaraja group</strong> (India)</p>
<p style="text-align: left;"><strong></strong><em><strong>2.</strong> Target:</em> <strong>South African Postbank</strong></p>
<p style="text-align: left;"><em>Damage:</em> <strong>$6.7 million</strong></p>
<p style="text-align: left;"><em>Attacker(s):</em> <strong>Unknown</strong></p>
<p style="text-align: left;"><em><strong>3.</strong> Target:</em> <strong>Zappos.com</strong></p>
<p style="text-align: left;"><em>Damage:</em> <strong>24 million customer details compromised</strong></p>
<p style="text-align: left;"><em>Attacker(s):</em> <strong>Unknown</strong></p>
<p style="text-align: left;"><strong></strong><em><strong>4.</strong> Target:</em> <strong>Japanese Space Agency</strong></p>
<p style="text-align: left;"><em>Damage:</em> <strong>Login information to gain access to a cargo shuttle that carries food and equipment to the International Space Station (ISS) has been stolen</strong><em></em></p>
<p style="text-align: left;"><em> Attacker(s):</em> <strong>Unknown</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2012/01/19/cyber-crime-diary-january-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Modern Warfare 2012</title>
		<link>http://malwareresearchgroup.com/2012/01/02/the-war-is-on/</link>
		<comments>http://malwareresearchgroup.com/2012/01/02/the-war-is-on/#comments</comments>
		<pubDate>Mon, 02 Jan 2012 18:03:44 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4136</guid>
		<description><![CDATA[Rootkit, Bootkit, Adware, Backdoor, BHO, Downloader, Email Worm, Exploit, Flooder, Hack Tool, Hoax, Script, HTML, VB, JS, Bat, Fat, Net Worm, P2P Worm, Packed, Constructor , Packer, SQL, IM Worm, PWS, Spy, Dropper, Banker, Clicker, Proxy, SMS, GameThief, Ransom, Virus, &#8230; <a href="http://malwareresearchgroup.com/2012/01/02/the-war-is-on/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<h1><strong><span style="color: #000000;">Rootkit, Bootkit, Adware, Backdoor, BHO, Downloader, Email Worm, Exploit, Flooder, Hack Tool, Hoax, Script, HTML, VB, JS, Bat, Fat, Net Worm, P2P Worm, Packed, Constructor , Packer, SQL, IM Worm, PWS, Spy, Dropper, Banker, Clicker, Proxy, SMS, GameThief, Ransom, Virus, Worm, Spyware, Fake AV, Fraud, Win32, Win64, Android&#8230;.</span></strong></h1>
<p>&nbsp;</p>
<p><em>Above is a list detailing just some of the malware categories MRG Effitas processes in its labs. Each individual category of malware may have tens or hundreds of thousands of variants. Each and every day, each category will spawn tens of thousands more variants.</em></p>
<p style="text-align: center;"><em>The war is on, let’s work smart and join forces and win it!</em></p>
<p><em><a href="http://malwareresearchgroup.com/wp-content/uploads/2012/01/shake-hands.jpg"><img class="aligncenter size-full wp-image-4146" title="Modern Warfare 2012" src="http://malwareresearchgroup.com/wp-content/uploads/2012/01/shake-hands.jpg" alt="" width="300" height="225" /></a><br />
</em></p>
<p style="text-align: center;"><strong>MRG Effitas Team.</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2012/01/02/the-war-is-on/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MRG Effitas Flash Tests &#8211; New Testing Specification</title>
		<link>http://malwareresearchgroup.com/2011/11/04/mrg-effitas-flash-tests-new-testing-specification/</link>
		<comments>http://malwareresearchgroup.com/2011/11/04/mrg-effitas-flash-tests-new-testing-specification/#comments</comments>
		<pubDate>Fri, 04 Nov 2011 20:12:51 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4080</guid>
		<description><![CDATA[MRG Effitas is happy to announce that from now on we will be using a new testing specification for our Flash Tests. The methodology remains the same, however, we will now be using 200 0-day malware samples in each test. &#8230; <a href="http://malwareresearchgroup.com/2011/11/04/mrg-effitas-flash-tests-new-testing-specification/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>MRG Effitas is happy to announce that from now on we will be using a new testing specification for our Flash Tests. The methodology remains the same, however, we will now be using <span style="text-decoration: underline;"><strong>200</strong></span> 0-day malware samples in each test.</p>
<p>List of participants by category:</p>
<p><span style="text-decoration: underline;">Standalone Anti-Malware Applications:</span></p>
<p>Avira Antivir Premium<br />
Avast Pro Antivirus<br />
AVG Antivirus<br />
BitDefender Antivirus<br />
Emsisoft Anti-Malware<br />
Eset Nod32 Antivirus<br />
F-Secure Antivirus<br />
GFI VIPRE Antivirus<br />
IKARUS virus.utilities<br />
Kaspersky Antivirus<br />
Microsoft Security Essentials<br />
McAfee Antivirus Plus<br />
Panda Cloud Antivirus<br />
SourceFire Immunet Plus<br />
Symantec Norton Antivirus<br />
Webroot SecureAnywhere</p>
<p><span style="text-decoration: underline;">Complementary Anti-Malware Applications:</span></p>
<p>Malwarebytes&#8217; Anti-Malware<br />
SUPERAntispyware Professional<br />
Zemana Anti-Malware powered by HitmanPro</p>
<p><span style="text-decoration: underline;">HIPS, AntiLogeers, Behaviour Blockers:</span></p>
<p>SoftSphere DefenseWall HIPS<br />
Zemana AntiLogger</p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2011/11/04/mrg-effitas-flash-tests-new-testing-specification/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>Is Online Banking safe? MRG Effitas Poll Results</title>
		<link>http://malwareresearchgroup.com/2011/11/01/is-online-banking-safe-mrg-effitas-poll-results/</link>
		<comments>http://malwareresearchgroup.com/2011/11/01/is-online-banking-safe-mrg-effitas-poll-results/#comments</comments>
		<pubDate>Tue, 01 Nov 2011 18:06:16 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4074</guid>
		<description><![CDATA[&#160;]]></description>
			<content:encoded><![CDATA[<p><a href="http://malwareresearchgroup.com/wp-content/uploads/2011/11/MRG-Effitas-Poll1.png"><img class="aligncenter size-full wp-image-4078" title="MRG Effitas Poll" src="http://malwareresearchgroup.com/wp-content/uploads/2011/11/MRG-Effitas-Poll1.png" alt="" width="500" height="386" /></a></p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2011/11/01/is-online-banking-safe-mrg-effitas-poll-results/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MRG Effitas Begins Defining Anti-Malware Testing Certification Standards</title>
		<link>http://malwareresearchgroup.com/2011/10/26/mrg-effitas-begins-defining-anti-malware-testing-certification-standards/</link>
		<comments>http://malwareresearchgroup.com/2011/10/26/mrg-effitas-begins-defining-anti-malware-testing-certification-standards/#comments</comments>
		<pubDate>Wed, 26 Oct 2011 16:46:30 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4070</guid>
		<description><![CDATA[Due to the lack of any independent certification of Anti-Malware or IT security testing, MRG Effitas has started the process of rationalizing and rigorously defining its testing philosophy, objectives and methodology before having these ISO 9001 certified. We would welcome &#8230; <a href="http://malwareresearchgroup.com/2011/10/26/mrg-effitas-begins-defining-anti-malware-testing-certification-standards/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<h2>Due to the lack of any independent certification of Anti-Malware or IT security testing, MRG Effitas has started the process of rationalizing and rigorously defining its testing philosophy, objectives and methodology before having these ISO 9001 certified.</h2>
<h2>We would welcome constructive input from any interested party.</h2>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2011/10/26/mrg-effitas-begins-defining-anti-malware-testing-certification-standards/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Earthquake In Turkey</title>
		<link>http://malwareresearchgroup.com/2011/10/23/earthquake-in-turkey/</link>
		<comments>http://malwareresearchgroup.com/2011/10/23/earthquake-in-turkey/#comments</comments>
		<pubDate>Sun, 23 Oct 2011 21:30:22 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4067</guid>
		<description><![CDATA[There has been a huge earthquake in Turkey today which has caused an as yet unknown loss of life and large scale destruction. The earthquake of magnitude 7.2 occurred at 1:41 p.m. local time and there were at least seven &#8230; <a href="http://malwareresearchgroup.com/2011/10/23/earthquake-in-turkey/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p><a href="http://malwareresearchgroup.com/wp-content/uploads/2011/10/Turkey-Quake.jpg"><img class="aligncenter size-medium wp-image-4068" title="Turkey Quake" src="http://malwareresearchgroup.com/wp-content/uploads/2011/10/Turkey-Quake-300x205.jpg" alt="" width="300" height="205" /></a></p>
<h2><strong>There has been a huge earthquake in Turkey today which has caused an as yet unknown loss of life and large scale destruction. The earthquake of magnitude 7.2 occurred at 1:41 p.m. local time and there were at least seven large aftershocks.</strong></h2>
<h2><strong>We have several good friends in the country and are in the process of trying to contact them to ensure they are okay.</strong></h2>
<h2><strong>We send our best wishes to the people of Turkey and hope there are as few casualties as possible.</strong></h2>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2011/10/23/earthquake-in-turkey/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Takes Down Kelihos Botnet</title>
		<link>http://malwareresearchgroup.com/2011/09/29/microsoft-takes-down-kelihos-botnet/</link>
		<comments>http://malwareresearchgroup.com/2011/09/29/microsoft-takes-down-kelihos-botnet/#comments</comments>
		<pubDate>Thu, 29 Sep 2011 19:03:55 +0000</pubDate>
		<dc:creator>Sveta</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://malwareresearchgroup.com/?p=4041</guid>
		<description><![CDATA[Continuing its legal assault on botnet operators and the hosting companies that the criminals use for their activities, Microsoft has announced new actions against a group of people it contends are responsible for the operation of the Kelihos botnet. The &#8230; <a href="http://malwareresearchgroup.com/2011/09/29/microsoft-takes-down-kelihos-botnet/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p><a href="http://malwareresearchgroup.com/wp-content/uploads/2011/09/thumbs-up.jpg"><img class="alignleft size-full wp-image-4042" title="thumbs up" src="http://malwareresearchgroup.com/wp-content/uploads/2011/09/thumbs-up.jpg" alt="" width="250" height="249" /></a>Continuing its legal assault on botnet operators and the hosting companies that the criminals use for their activities, Microsoft has announced new actions against a group of people it contends are responsible for the operation of the Kelihos botnet. The company has also helped to take down the botnet itself and says that Kelihos&#8217;s operators were using it not only to send out spam and steal personal information but also for some more nefarious purposes.</p>
<p>Kelihos, which is sometimes grouped in with the more well-known Waledac botnet, is a fairly small botnet, at an estimated 41,000 machines, but Microsoft officials said that the network was being used for a large variety of activities, including child pornography. Microsoft on Tuesday notified the defendants in the civil cases it has filed in relation to the Kelihos botnet and last week the company also got a temporary restraining order in federal court in Virginia against a man in the Czech Republic named Dominique Alexander Piatti and 22 unnamed people in connection with the operation of the botnet.<br />
<span id="more-4041"></span><br />
&#8220;On Sept. 22nd, Microsoft filed for an ex parte temporary restraining order from the U.S. District Court for the Eastern District of Virginia against Dominique Alexander Piatti, dotFREE Group SRO and John Does 1-22. The court granted our request, allowing us to sever the known connections between the Kelihos botnet and the individual “zombie computers” under its control. Immediately following the takedown on Sept. 26th, we served Dominique Alexander Piatti, who was living and operating his business in the Czech Republic, and dotFREE Group SRO, with notice of the lawsuit and began discussions with Mr. Piatti to determine which of his subdomains were being used for legitimate business, so we could get those customers back online as soon as possible. We are also beginning our efforts to notify the other John Doe defendants in this case, and will be actively continuing our investigation to find out more about the people behind this botnet,&#8221; Richard Boscovich, senior attorney in Microsoft&#8217;s Digital Crimes Unit, said in a blog post on the takedown operation.</p>
<p>The restraining order allowed Microsoft to disable the IP addresses and domains involved in the Kelihos botnet&#8217;s operation without notifying the alleged operators in advance. The botnet comprised just two IP addresses running the command-and-control servers and 21 separate domains. In its petition for the restraining order, Microsoft said that Kelihos-infected machines sent out huge volumes of spam, including the typical stock and pharmaceutical scams, but also some messages that appear to promote sites engaged in child pornography.</p>
<p>This is the latest in a series of similar actions that Microsoft&#8217;s Digital Crimes Unit has initiated against botnets in the last couple of years. In March the company and researchers from FireEye took down the Rustock botnet, which was a much larger and more disruptive network than Kelihos. A year earlier, Microsoft helped take down the Waledac botnet with similar tactics.</p>
<p>But the takedown of Kelihos and the related legal action is different from previous operations in that not only is Microsoft going after the botnet domains and IP addresses, but it is naming the person that it considers to be responsible for the operation of the network. Boscovich also said in his blog post that Microsoft hopes the Kelihos takedown will send a message to botnet operators and hosting providers about the company&#8217;s seriousness in addressing the problem.</p>
<p>&#8220;Naming these defendants also helps expose how cybercrime is enabled when domain providers and other cyber infrastructure providers fail to know their customers. Without a domain infrastructure like the one allegedly hosted by Mr. Piatti and his company, botnet operators and other purveyors of scams and malware would find it much harder to operate anonymously and out of sight. By taking down the botnet infrastructure, we hope that this will help deter and raise the cost of committing cybercrime,&#8221; Boscovich wrote.</p>
<p>- <em>Threat Post</em></p>
]]></content:encoded>
			<wfw:commentRss>http://malwareresearchgroup.com/2011/09/29/microsoft-takes-down-kelihos-botnet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

