hmm? ahh... malware
Tuesday, October 25th, 2011 09:32 pmI got an LJ Notice that "grevvlad" added me as a friend. So I looked at their profile. It doesn't show me on their friends list, so I suppose they added me and then removed me. I couldn't figure out if it was a real account/person, or something spammy/nefarious.
Their LJ seems to only have videos posted. If you click on some of their interests... say "moontale"... it shows several communities where this person is the only, or nearly the only poster. And the things posted on those communities are again mostly videos - music videos. Dark/industrial/metal type music. As well as videos of an anti-German(?) slant.
Certainly suspicious. But if it is something spammy, it is more complex than usual. And what is the purpose?
Ah! As I was browsing a few of those LJ pages, I got a popup that my MalwareBytes blocked something... so the purpose must be to install malware on people's computers, or something nefarious indeed.
Yay! for MalwareBytes Anti-Malware PRO. I installed it with the real-time protection module this weekend, after buying a license (4 licenses actually... one for my friend's computer, one for my mom's, one for Qiao, and one for me).
Today's log:
08:31:29 *** MESSAGE Protection started successfully
08:31:34 *** MESSAGE IP Protection started successfully
21:26:59 *** IP-BLOCK 82.146.59.111 (Type: outgoing, Port: 49523, Process: firefox.exe)
21:50:49 *** IP-BLOCK 82.146.59.111 (Type: outgoing, Port: 49799, Process: firefox.exe)
Their LJ seems to only have videos posted. If you click on some of their interests... say "moontale"... it shows several communities where this person is the only, or nearly the only poster. And the things posted on those communities are again mostly videos - music videos. Dark/industrial/metal type music. As well as videos of an anti-German(?) slant.
Certainly suspicious. But if it is something spammy, it is more complex than usual. And what is the purpose?
Ah! As I was browsing a few of those LJ pages, I got a popup that my MalwareBytes blocked something... so the purpose must be to install malware on people's computers, or something nefarious indeed.
Yay! for MalwareBytes Anti-Malware PRO. I installed it with the real-time protection module this weekend, after buying a license (4 licenses actually... one for my friend's computer, one for my mom's, one for Qiao, and one for me).
Today's log:
08:31:29 *** MESSAGE Protection started successfully
08:31:34 *** MESSAGE IP Protection started successfully
21:26:59 *** IP-BLOCK 82.146.59.111 (Type: outgoing, Port: 49523, Process: firefox.exe)
21:50:49 *** IP-BLOCK 82.146.59.111 (Type: outgoing, Port: 49799, Process: firefox.exe)