<?xml version="1.0" encoding="UTF-8" standalone="yes"?><oembed><version><![CDATA[1.0]]></version><provider_name><![CDATA[37prime]]></provider_name><provider_url><![CDATA[https://37prime.wordpress.com]]></provider_url><author_name><![CDATA[A Prime Number]]></author_name><author_url><![CDATA[https://37prime.wordpress.com/author/37prime/]]></author_url><title><![CDATA[Spyware Drive-By on&nbsp;MySpace]]></title><type><![CDATA[link]]></type><html><![CDATA[<p>A friend of mine was reinstalling one of his Windows machine just for the heck of it. For some reason, &#8220;Lord Ahriman&#8221; from the band &#8220;Dark Funeral&#8221; came up in our conversations. Google pointed us to &#8220;Lord Ahriman&#8221; MySpace page and both of us were looking at the page on our own computers. I was using my PowerBook G4 and he was using Internet Explorer on his newly installed Windows OS.</p>
<p>After a while Internet Explorer quit unexpectedly in the middle of Microsoft Update. Naturally, he restarted the computer. Right after that the Windows started acting weird. The &#8220;Start Menu&#8221; no longer functional, and we couldn&#8217;t go to Mozilla homepage.</p>
<p>Upon a brief inspection, we found a suspicious process named &#8220;<a href="http://www.google.com/search?rls=en&amp;q=ntsock.exe&amp;ie=UTF-8&amp;oe=UTF-8" target="_blank">ntsock.exe</a>&#8221; running on his system. It turned out to be a spyware. He quickly downloaded <a href="http://free.grisoft.com/" target="_blank">AVG Anti-Spyware</a> and managed to remove the spyware. The &#8220;Start Menu&#8221; finally worked normally, but the system was still unstable. Upon further inspections, we found yet another suspicious process named &#8220;<a href="http://www.google.com/search?hl=en&amp;lr=&amp;safe=off&amp;rls=en&amp;q=username.exe&amp;btnG=Search" target="_blank">username.exe</a>&#8220;. It seems to be another piece of spyware.</p>
<p>We&#8217;re not really sure how we got the spywares in the first place. By the process of elimination, we concluded that the spywares were delivered through MySpace. It was a spyware drive-by on MySpace.</p>
<p>Anti-Spywares (free versions) for Windows<br />
<a href="http://www.safer-networking.org/" target="_blank"> Spybot: Search &amp; Destroy</a> &#8211; <a href="http://spybot.info/" target="_blank">http://spybot.info/</a><br />
<a href="http://www.lavasoft.com/" target="_blank">Lavasoft: Ad-Aware Personal Edition SE</a>	&#8211; <a href="http://www.lavasoft.com/" target="_blank">http://www.lavasoft.com/</a><br />
<a href="http://www.javacoolsoftware.com/" target="_blank"> SpywareBlaster</a>	&#8211; <a href="http://spywareblaster.info/ " target="_blank">http://spywareblaster.info/</a><br />
<a href="http://www.microsoft.com/defender/" target="_blank"> Microsoft Defender</a> &#8211;	<a href="http://www.microsoft.com/defender/" target="_blank">http://www.microsoft.com/defender/</a><br />
<a href="http://free.grisoft.com/" target="_blank"> AVG Anti-Spyware Free</a> &#8211;	<a href="http://free.grisoft.com/" target="_blank">http://free.grisoft.com/</a></p>
]]></html></oembed>