<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Pick Your Poison: KOOBFACE or FAKEAV?</title>
	<atom:link href="http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/</link>
	<description>Threat News and Information Direct from the Experts</description>
	<lastBuildDate>Fri, 10 Feb 2012 02:16:37 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: abitowhit</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33574</link>
		<dc:creator>abitowhit</dc:creator>
		<pubDate>Thu, 01 Oct 2009 15:30:49 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33574</guid>
		<description>Does killing all IE processes abort over clicking on anything?  A button is a button is a button, just cuz it says close, abort, quit or donottinfectme does not mean it will close, abort,quit or notinfectme. :)</description>
		<content:encoded><![CDATA[<p>Does killing all IE processes abort over clicking on anything?  A button is a button is a button, just cuz it says close, abort, quit or donottinfectme does not mean it will close, abort,quit or notinfectme. <img src='http://blog.trendmicro.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: FAKEAV propaga nos links pagos dos motores de busca &#124; Unsecurity .info - Segurança Web em Portugal</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33426</link>
		<dc:creator>FAKEAV propaga nos links pagos dos motores de busca &#124; Unsecurity .info - Segurança Web em Portugal</dc:creator>
		<pubDate>Thu, 24 Sep 2009 22:40:01 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33426</guid>
		<description>[...] maliciosos cujo único objectivo é propagar o malware FAKEAV estão a descobrir novas maneiras para atingirem essa meta, a de infectar o máximo possível de [...]</description>
		<content:encoded><![CDATA[<p>[...] maliciosos cujo único objectivo é propagar o malware FAKEAV estão a descobrir novas maneiras para atingirem essa meta, a de infectar o máximo possível de [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: greencloudsec (Green Cloud Security)</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33357</link>
		<dc:creator>greencloudsec (Green Cloud Security)</dc:creator>
		<pubDate>Mon, 21 Sep 2009 09:11:13 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33357</guid>
		<description>RT &lt;a rel=&quot;nofollow&quot; href=&quot;http://twitter.com/TrendMicro&quot;&gt;@TrendMicro&lt;/a&gt;: Pick your poison: Koobface or FakeAV? http://blog.trendmicro.com/?p=19364</description>
		<content:encoded><![CDATA[<p>RT <a rel="nofollow" href="http://twitter.com/TrendMicro">@TrendMicro</a>: Pick your poison: Koobface or FakeAV? <a href="http://blog.trendmicro.com/?p=19364" rel="nofollow">http://blog.trendmicro.com/?p=19364</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Close Encounters of a Viral Kind &#124; Geekazine.com</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33350</link>
		<dc:creator>Close Encounters of a Viral Kind &#124; Geekazine.com</dc:creator>
		<pubDate>Sun, 20 Sep 2009 18:12:21 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33350</guid>
		<description>[...] The name of the link again turned up nothing, but there was a item stating that the Koobface Trojan, which targets Facebook users, has returned with a new twist. If you go to their fake Facebook page then and try to close the browser window, it forces a download of its malware. Trend has a video of this behavior in the article. [...]</description>
		<content:encoded><![CDATA[<p>[...] The name of the link again turned up nothing, but there was a item stating that the Koobface Trojan, which targets Facebook users, has returned with a new twist. If you go to their fake Facebook page then and try to close the browser window, it forces a download of its malware. Trend has a video of this behavior in the article. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kerry</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33339</link>
		<dc:creator>Kerry</dc:creator>
		<pubDate>Sun, 20 Sep 2009 02:10:44 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33339</guid>
		<description>Tons of people are falling for this. I have seen literally dozens of customers infected with Koobface and whatever flavor of rogue AV/AS is out this week. Looking for the installer for Green AV, SoftSave, and the latest Quick Heal Cleaner.</description>
		<content:encoded><![CDATA[<p>Tons of people are falling for this. I have seen literally dozens of customers infected with Koobface and whatever flavor of rogue AV/AS is out this week. Looking for the installer for Green AV, SoftSave, and the latest Quick Heal Cleaner.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: becca</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33338</link>
		<dc:creator>becca</dc:creator>
		<pubDate>Sun, 20 Sep 2009 01:24:35 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33338</guid>
		<description>Help i got the fake av how do i get rid of it i updated from my 08 antivirus plus antispyware to the 2010 version but don&#039;t think that got rid of it. Best  buy where i bought everything including their black tie protection 12/2008 informed me today that it ll cost me $200 for them to do it!!!!Can you please tell me how to get rid of it</description>
		<content:encoded><![CDATA[<p>Help i got the fake av how do i get rid of it i updated from my 08 antivirus plus antispyware to the 2010 version but don&#8217;t think that got rid of it. Best  buy where i bought everything including their black tie protection 12/2008 informed me today that it ll cost me $200 for them to do it!!!!Can you please tell me how to get rid of it</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: UnderForge of Lack &#187; Blog Archive &#187; 2009.09.19 土曜日</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33323</link>
		<dc:creator>UnderForge of Lack &#187; Blog Archive &#187; 2009.09.19 土曜日</dc:creator>
		<pubDate>Fri, 18 Sep 2009 23:35:38 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33323</guid>
		<description>[...]  ---------- STBD bury down these bots  Pick Your Poison: KOOBFACE or FAKEAV Facebook のログイン画面に似せたサイトから [...]</description>
		<content:encoded><![CDATA[<p>[...]  &#8212;&#8212;&#8212;- STBD bury down these bots  Pick Your Poison: KOOBFACE or FAKEAV Facebook のログイン画面に似せたサイトから [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Menardconnect (Menard Osena)</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33301</link>
		<dc:creator>Menardconnect (Menard Osena)</dc:creator>
		<pubDate>Fri, 18 Sep 2009 12:16:58 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33301</guid>
		<description>RT &lt;a rel=&quot;nofollow&quot; href=&quot;http://twitter.com/TrendMicro&quot;&gt;@TrendMicro&lt;/a&gt;: Pick your poison: Koobface or FakeAV? http://blog.trendmicro.com/?p=19364</description>
		<content:encoded><![CDATA[<p>RT <a rel="nofollow" href="http://twitter.com/TrendMicro">@TrendMicro</a>: Pick your poison: Koobface or FakeAV? <a href="http://blog.trendmicro.com/?p=19364" rel="nofollow">http://blog.trendmicro.com/?p=19364</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TrendMicro (TrendMicro)</title>
		<link>http://blog.trendmicro.com/pick-your-poison-koobface-or-fakeav/comment-page-1/#comment-33302</link>
		<dc:creator>TrendMicro (TrendMicro)</dc:creator>
		<pubDate>Fri, 18 Sep 2009 12:06:26 +0000</pubDate>
		<guid isPermaLink="false">http://blog.trendmicro.com/?p=19364#comment-33302</guid>
		<description>Pick your poison: Koobface or FakeAV? http://blog.trendmicro.com/?p=19364</description>
		<content:encoded><![CDATA[<p>Pick your poison: Koobface or FakeAV? <a href="http://blog.trendmicro.com/?p=19364" rel="nofollow">http://blog.trendmicro.com/?p=19364</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>

