<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for etix&#039;s weblog</title>
	<atom:link href="http://blog.l0cal.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.l0cal.com</link>
	<description>Random ♺ stuff</description>
	<lastBuildDate>Tue, 27 Sep 2011 05:45:12 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>Comment on These companies that mislead our users by Peter</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-538</link>
		<dc:creator>Peter</dc:creator>
		<pubDate>Tue, 27 Sep 2011 05:45:12 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-538</guid>
		<description>VLC.de hijack the browser IE and Firefox!

Look here: http://www.trojaner-board.de/66529-warnung-vor-vlc-player-von-vlc-de-adware-und-mehr.html</description>
		<content:encoded><![CDATA[<p>VLC.de hijack the browser IE and Firefox!</p>
<p>Look here: <a href="http://www.trojaner-board.de/66529-warnung-vor-vlc-player-von-vlc-de-adware-und-mehr.html" rel="nofollow">http://www.trojaner-board.de/66529-warnung-vor-vlc-player-von-vlc-de-adware-und-mehr.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by Ronald</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-424</link>
		<dc:creator>Ronald</dc:creator>
		<pubDate>Thu, 21 Jul 2011 10:26:52 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-424</guid>
		<description>This blog has been also linked at in the newsletter from 2011/07/21 by Bürger-CERT (http://www.buerger-cert.de/) by the German Ministry for Security in the Information Technology: http://www.buerger-cert.de/newsletter_archiv.aspx?param=Zxo7YT%2f0plfW0EHbCemqzA%253d%253d

But as long as there are people clicking on those sites and downloading fake and malware programs without having any idea of security, sites like the mentioned ones above will exist!</description>
		<content:encoded><![CDATA[<p>This blog has been also linked at in the newsletter from 2011/07/21 by Bürger-CERT (<a href="http://www.buerger-cert.de/" rel="nofollow">http://www.buerger-cert.de/</a>) by the German Ministry for Security in the Information Technology: <a href="http://www.buerger-cert.de/newsletter_archiv.aspx?param=Zxo7YT%2f0plfW0EHbCemqzA%253d%253d" rel="nofollow">http://www.buerger-cert.de/newsletter_archiv.aspx?param=Zxo7YT%2f0plfW0EHbCemqzA%253d%253d</a></p>
<p>But as long as there are people clicking on those sites and downloading fake and malware programs without having any idea of security, sites like the mentioned ones above will exist!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by gibbon_</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-416</link>
		<dc:creator>gibbon_</dc:creator>
		<pubDate>Mon, 18 Jul 2011 10:02:13 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-416</guid>
		<description>The binaries contain some kind of &quot;AdWare&quot; like Software that can be deselected during installation. Its not guaranteed, that the rest of the installation does not do unwanted modifications, if you deselect the AdWare. It though looks like the custom installer launches the official VLC installer after installing the AdWare (wrapped installation). So far so bad :(.</description>
		<content:encoded><![CDATA[<p>The binaries contain some kind of &#8220;AdWare&#8221; like Software that can be deselected during installation. Its not guaranteed, that the rest of the installation does not do unwanted modifications, if you deselect the AdWare. It though looks like the custom installer launches the official VLC installer after installing the AdWare (wrapped installation). So far so bad <img src='http://blog.l0cal.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> .</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by Thomas C.</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-414</link>
		<dc:creator>Thomas C.</dc:creator>
		<pubDate>Mon, 18 Jul 2011 04:15:51 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-414</guid>
		<description>more sites?!
http://www.vlc.de/
http://www.vlcmediaplayer.org/
http://www.vlc-download.de/
http://www.vlc-media-player.biz/</description>
		<content:encoded><![CDATA[<p>more sites?!<br />
<a href="http://www.vlc.de/" rel="nofollow">http://www.vlc.de/</a><br />
<a href="http://www.vlcmediaplayer.org/" rel="nofollow">http://www.vlcmediaplayer.org/</a><br />
<a href="http://www.vlc-download.de/" rel="nofollow">http://www.vlc-download.de/</a><br />
<a href="http://www.vlc-media-player.biz/" rel="nofollow">http://www.vlc-media-player.biz/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by etix</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-412</link>
		<dc:creator>etix</dc:creator>
		<pubDate>Mon, 18 Jul 2011 00:42:05 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-412</guid>
		<description>AFAIK most of these alerts came from their heuristic that detects some VLC modules (that contains assembly code) as some sort of trojan.</description>
		<content:encoded><![CDATA[<p>AFAIK most of these alerts came from their heuristic that detects some VLC modules (that contains assembly code) as some sort of trojan.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by etix</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-411</link>
		<dc:creator>etix</dc:creator>
		<pubDate>Mon, 18 Jul 2011 00:33:30 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-411</guid>
		<description>Sadly most (if not all) of our user base on Windows don&#039;t check for md5 signatures after they download VLC. Doing something more &quot;user-friendly&quot; (other than md5sum on the downloaded file) won&#039;t work because these fake could easily bypass the security check as they don&#039;t touch VLC binaries but only the installer.</description>
		<content:encoded><![CDATA[<p>Sadly most (if not all) of our user base on Windows don&#8217;t check for md5 signatures after they download VLC. Doing something more &#8220;user-friendly&#8221; (other than md5sum on the downloaded file) won&#8217;t work because these fake could easily bypass the security check as they don&#8217;t touch VLC binaries but only the installer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by Chris</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-410</link>
		<dc:creator>Chris</dc:creator>
		<pubDate>Mon, 18 Jul 2011 00:11:51 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-410</guid>
		<description>You have been cited on www.heise.de - this should make an impact on the evil clones.... at least in Germany, Austria &amp; Switzerland (german speaking countries).

The article is here: http://www.heise.de/newsticker/meldung/VLC-kaempft-mit-Luecken-und-betruegerischen-Klonen-1279867.html

Greetings!</description>
		<content:encoded><![CDATA[<p>You have been cited on <a href="http://www.heise.de" rel="nofollow">http://www.heise.de</a> &#8211; this should make an impact on the evil clones&#8230;. at least in Germany, Austria &amp; Switzerland (german speaking countries).</p>
<p>The article is here: <a href="http://www.heise.de/newsticker/meldung/VLC-kaempft-mit-Luecken-und-betruegerischen-Klonen-1279867.html" rel="nofollow">http://www.heise.de/newsticker/meldung/VLC-kaempft-mit-Luecken-und-betruegerischen-Klonen-1279867.html</a></p>
<p>Greetings!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by Aragorn2</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-408</link>
		<dc:creator>Aragorn2</dc:creator>
		<pubDate>Sun, 17 Jul 2011 15:26:31 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-408</guid>
		<description>Why do you not implement code-signing for your distributed executables? At least for the criminals primary target OS family, for Windows. Use code-signing, maybe from CaCert.org can prove the VLC is genuine. A prominent menu-entry can simply do a self-check (SHA2/Whirlpool-checksum). If this menu-item is not present, this is a strong hint, it is a badware.</description>
		<content:encoded><![CDATA[<p>Why do you not implement code-signing for your distributed executables? At least for the criminals primary target OS family, for Windows. Use code-signing, maybe from CaCert.org can prove the VLC is genuine. A prominent menu-entry can simply do a self-check (SHA2/Whirlpool-checksum). If this menu-item is not present, this is a strong hint, it is a badware.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by eumel_1</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-407</link>
		<dc:creator>eumel_1</dc:creator>
		<pubDate>Sun, 17 Jul 2011 11:05:53 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-407</guid>
		<description>The site VLC.de gives you Malware to download:
Filesize VLC 1.1.10 from original (videolan.org): 21.022.914 Bytes
Filesize VLC 1.1.10 Fake from this website: 21.131.264 Bytes
any more questions?
Also the 0180 telephone number is very suspect</description>
		<content:encoded><![CDATA[<p>The site VLC.de gives you Malware to download:<br />
Filesize VLC 1.1.10 from original (videolan.org): 21.022.914 Bytes<br />
Filesize VLC 1.1.10 Fake from this website: 21.131.264 Bytes<br />
any more questions?<br />
Also the 0180 telephone number is very suspect</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on These companies that mislead our users by rura</title>
		<link>http://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/comment-page-1/#comment-406</link>
		<dc:creator>rura</dc:creator>
		<pubDate>Sun, 17 Jul 2011 10:16:59 +0000</pubDate>
		<guid isPermaLink="false">http://blog.l0cal.com/?p=326#comment-406</guid>
		<description>I have a case where google cashed in close to 1 MILLION €uros from german cybercrime for adwords for fake online shops!</description>
		<content:encoded><![CDATA[<p>I have a case where google cashed in close to 1 MILLION €uros from german cybercrime for adwords for fake online shops!</p>
]]></content:encoded>
	</item>
</channel>
</rss>

