<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Fighting Malware!</title>
	<atom:link href="http://malwaresurvival.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://malwaresurvival.wordpress.com</link>
	<description></description>
	<lastBuildDate>Thu, 20 Jan 2011 16:14:37 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='malwaresurvival.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://1.gravatar.com/blavatar/f88e2e94b4b4a869b512664308efb4dd?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Fighting Malware!</title>
		<link>http://malwaresurvival.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://malwaresurvival.wordpress.com/osd.xml" title="Fighting Malware!" />
	<atom:link rel='hub' href='http://malwaresurvival.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Spam offering Russian Girls A Plenty!</title>
		<link>http://malwaresurvival.wordpress.com/2011/01/20/spam-offering-russian-girls-a-plenty/</link>
		<comments>http://malwaresurvival.wordpress.com/2011/01/20/spam-offering-russian-girls-a-plenty/#comments</comments>
		<pubDate>Thu, 20 Jan 2011 16:14:34 +0000</pubDate>
		<dc:creator>malwaresurvival</dc:creator>
				<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[Web Threats]]></category>
		<category><![CDATA[Trojan Zbot]]></category>
		<category><![CDATA[ZEUS]]></category>

		<guid isPermaLink="false">http://malwaresurvival.com/?p=2673</guid>
		<description><![CDATA[Our readers are reporting that the Cyber Criminals are sending Spam with malicious links. The criminals are trying to entice users with Russian Girls and Sex. &#8220;Beware these sites are crawling with Malware!&#8221; &#8212;&#8212;&#8212;&#8212;&#8212;-&#8212;&#8212;-&#60;Spam Sample&#62;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211; From: Fance@Franceroo.ru &#60;Malware Spam&#62; To: All MS Hi dear! I am for a decent man. As for me, I am [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=malwaresurvival.wordpress.com&amp;blog=9919950&amp;post=2673&amp;subd=malwaresurvival&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://malwaresurvival.wordpress.com/2011/01/20/spam-offering-russian-girls-a-plenty/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/00cedff68c3e894a41f53d73d33e36ce?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">malwaresurvival</media:title>
		</media:content>
	</item>
		<item>
		<title>Casino Spam is a Phish</title>
		<link>http://malwaresurvival.wordpress.com/2011/01/19/casino-spam-is-a-phish/</link>
		<comments>http://malwaresurvival.wordpress.com/2011/01/19/casino-spam-is-a-phish/#comments</comments>
		<pubDate>Wed, 19 Jan 2011 17:59:53 +0000</pubDate>
		<dc:creator>malwaresurvival</dc:creator>
				<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Web Threats]]></category>
		<category><![CDATA[Casino Spam]]></category>

		<guid isPermaLink="false">http://malwaresurvival.com/?p=2669</guid>
		<description><![CDATA[Our readers sent us a copy of the new Casino Spam that points to Russia. The Spam includes Phishing and Malware Sites. &#60;Sample&#62; From: &#8220;555&#8243; &#60;vidagbjbnkvpp@andrewsmemorial-umc.org&#62; To: Joe6@123x.com Your 555USD bonus has just arrived, Claim it in here - hxxp://stars-play-777.ru &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#60;&#62;&#8212;&#8212;&#8212;&#8212;&#8212; Malware Site: hxxp://stars-play-777.ru Points to: 175.121.56.57 Malware Files Created: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=malwaresurvival.wordpress.com&amp;blog=9919950&amp;post=2669&amp;subd=malwaresurvival&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://malwaresurvival.wordpress.com/2011/01/19/casino-spam-is-a-phish/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/00cedff68c3e894a41f53d73d33e36ce?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">malwaresurvival</media:title>
		</media:content>
	</item>
		<item>
		<title>Funky Fire Site Spewing Trojan Attacks</title>
		<link>http://malwaresurvival.wordpress.com/2011/01/17/funky-fire-site-spewing-trojan-attacks/</link>
		<comments>http://malwaresurvival.wordpress.com/2011/01/17/funky-fire-site-spewing-trojan-attacks/#comments</comments>
		<pubDate>Mon, 17 Jan 2011 17:27:27 +0000</pubDate>
		<dc:creator>malwaresurvival</dc:creator>
				<category><![CDATA[Backdoors]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Web Threats]]></category>
		<category><![CDATA[Trojan Zeus/Zbot]]></category>

		<guid isPermaLink="false">http://malwaresurvival.com/?p=2643</guid>
		<description><![CDATA[One of our readers informs that a site called Fireboys.com is spewing some banking Trojan attacks. The malware site fireboys.com has one IP number (66.96.130.133) , but the reverse is 133.130.96.66.static.eigbox.net, Berner.org and fabcor.com point to the same IP and also shares name servers. Bizfit.net, atmainteractive.com, vitalwellnessinc.com, mybimmer.com, reincarnationforte.net and at least 200 other hosts [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=malwaresurvival.wordpress.com&amp;blog=9919950&amp;post=2643&amp;subd=malwaresurvival&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://malwaresurvival.wordpress.com/2011/01/17/funky-fire-site-spewing-trojan-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/00cedff68c3e894a41f53d73d33e36ce?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">malwaresurvival</media:title>
		</media:content>
	</item>
		<item>
		<title>DHL and UPS Spam Includes Trojan SPYEYE</title>
		<link>http://malwaresurvival.wordpress.com/2011/01/13/dhl-and-ups-spam-includes-trojan-spyeye/</link>
		<comments>http://malwaresurvival.wordpress.com/2011/01/13/dhl-and-ups-spam-includes-trojan-spyeye/#comments</comments>
		<pubDate>Thu, 13 Jan 2011 22:11:56 +0000</pubDate>
		<dc:creator>malwaresurvival</dc:creator>
				<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Spam]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Virus Info]]></category>
		<category><![CDATA[Web Threats]]></category>
		<category><![CDATA[SPYEYE Botnet]]></category>
		<category><![CDATA[Trojan SpyEye]]></category>
		<category><![CDATA[UNITED_PARCEL_SERVICE-TRK]]></category>

		<guid isPermaLink="false">http://malwaresurvival.com/?p=2629</guid>
		<description><![CDATA[We are getting reports of some our readers getting spam that includes the Trojan SPYEYE and Bot attack. The payload will attempt to connect to malicious sites to download  updated Trojan and backdoor files. The Spam includes zip files that may include subjects for DHL and UPS Deliveries. Also, Our friends at McAfee are detecting [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=malwaresurvival.wordpress.com&amp;blog=9919950&amp;post=2629&amp;subd=malwaresurvival&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://malwaresurvival.wordpress.com/2011/01/13/dhl-and-ups-spam-includes-trojan-spyeye/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/00cedff68c3e894a41f53d73d33e36ce?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">malwaresurvival</media:title>
		</media:content>
	</item>
		<item>
		<title>zBOT points to Russia</title>
		<link>http://malwaresurvival.wordpress.com/2011/01/11/zbot-points-to-russia/</link>
		<comments>http://malwaresurvival.wordpress.com/2011/01/11/zbot-points-to-russia/#comments</comments>
		<pubDate>Tue, 11 Jan 2011 22:49:34 +0000</pubDate>
		<dc:creator>malwaresurvival</dc:creator>
				<category><![CDATA[Black List]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Web Threats]]></category>
		<category><![CDATA[Malware Sites]]></category>
		<category><![CDATA[Trojan Downloaders]]></category>
		<category><![CDATA[ZEUS/ZBOT]]></category>

		<guid isPermaLink="false">http://malwaresurvival.com/?p=2620</guid>
		<description><![CDATA[One of our poor reader&#8217;s  Windows  7.0 machine is dialing back to a site in the Russian Federation! The process logs show IP 194.63.144.81. We have flagged  the site as  a Trojan Zbot/ZeuS Attack. The poor reader ran his favorite AV program but it is not detecting anything. Here is the Solution: Kill the Machine [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=malwaresurvival.wordpress.com&amp;blog=9919950&amp;post=2620&amp;subd=malwaresurvival&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://malwaresurvival.wordpress.com/2011/01/11/zbot-points-to-russia/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/00cedff68c3e894a41f53d73d33e36ce?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">malwaresurvival</media:title>
		</media:content>
	</item>
	</channel>
</rss>
