Urlvoid - blog.urlvoid.com - URLVoid Blog
General Information:
Latest News:
Spam: New Product to Lose up to 15 lbs. 15 Aug 2013 | 09:15 pm
We noted an increase amount of email messages that promote a new product that should help people to lose weight. All the email messages we have captured, redirect users to .RU websites used to promote...
Revamped URLVoid Website 1 Mar 2013 | 04:54 pm
We recently updated URLVoid website: - Optimized the report page (example) - Show MyWOT reputation - Show connection details, such as HTTP response code, connect time, etc - Capture external URL r...
WordPress installed in compromised websites to promote pharmaceutical keywords 22 Feb 2013 | 09:01 pm
Seems that spammers prefer WordPress as blogging platform used to advertise pharmaceutical keywords. We noted a lot of websites compromised and used to host custom installations of WordPress, hidden i...
WordPress-how-to-videos(dot)com Spreads Java Exploits 16 Sep 2012 | 06:13 am
When we analyzed few Twitter followers in one of our websites, we noted that there was an user that was following us, see the image: We have analyzed the website (infected): The website wordpress-ho...
URLVoid API v2.0 9 Aug 2012 | 11:24 pm
URLVoid API is a free service (for non commercial use) that allow users to query our database of already analyzed domains and receive, in XML format, detailed details about each submitted domain. The ...
Phishing: PayPal Account Review Department 13 Jun 2012 | 07:40 pm
Phishing email against PayPal users: Header details: Attached there is a ZIP file named: The extracted file is a .HTML file: The sensitive data filled by the user is sent to this malicious URL: W...
Amazon.com Order Confirmation leads to Blackhole Exploit Kit 10 Jun 2012 | 05:40 am
We received few emails with subject: Inside the email message there is a HREF link that redirects users to a malicious web page containing malicious javascript code used to redirect users to the main...
New Malicious Injected Code: Injection_head and Injection_tail 9 Jun 2012 | 06:29 am
We have logged few websites infected with a new injected javascript code that seems to target mainly the websites powered with WordPress and Joomla. Below there is a screenshot of the malicious script...
Recent Blackhole Exploit Kit Activity 7 Jun 2012 | 04:45 pm
Our honeypot has logged few new Blackhole Exploit Kit activity. The Java exploit file Set.jar is downloaded: File details: Java is exploited and it is downloaded the payload PE file: File details:...
Phishing: Attention ! Votre compte PayPal a été limité 4 Jun 2012 | 07:42 pm
New phishing email used to spread HTML files with fake PayPal login forms: Header details: There is a ZIP file attached: The extracted file is a .HTML file: From this HTML code: We can see that t...