Welcome! Register for a free account (or login) > How does it work?
|
|


Jul 31 2008, 04:55 AM
Post
#16
|
|
![]() AplusWebMaster ![]() ![]() ![]() ![]() ![]() Group: Authentic Member Posts: 4,578 Joined: 30-December 03 From: USA Member No.: 1,643 Operating System: XP/SP3 |
FYI...
Airlines - infected ticket invoices... Attachment contains same Trojan horse that stole 1.6M records from Monster.com last year - http://preview.tinyurl.com/66ayhz July 28, 2008 (Computerworld) - "Several airlines, including Delta Air Lines Inc. and Northwest Airlines Corp., have warned customers that bogus e-mails posing as ticket invoices contain malware and urged them to immediately delete the messages. A researcher at McAfee Inc. confirmed the campaign in a post to the company's blog*. The e-mails, which purport to be from an airline, thank the recipient for using a new "Buy flight ticket Online" service on the airline's site, provide a log-in username and password, and say the person's credit card has been charged an amount usually in the $400 range. An attachment claims to be the invoice for the ticket and credit card charge..." * http://www.avertlabs.com/research/blog/ind...m-takes-flight/ More... - http://www.f-secure.com/weblog/archives/00001477.html July 30, 2008 - "... Today when we saw a large spam run sending out fake JetBlue etickets... The mail contains a ZIP file that contains the file eTicket#1721.exe which we detect as Trojan-Spy:W32/Zbot.QO. The malware itself tries to steal usernames and passwords to online banks..." (Screenshot available at the F-secure URL above.) - http://www.us-cert.gov/current/#airline_e_...et_email_attack July 31, 2008 This post has been edited by AplusWebMaster: Aug 5 2008, 04:29 AM |
|
|
|
![]() |
Aug 31 2008, 08:08 AM
Post
#17
|
|
![]() AplusWebMaster ![]() ![]() ![]() ![]() ![]() Group: Authentic Member Posts: 4,578 Joined: 30-December 03 From: USA Member No.: 1,643 Operating System: XP/SP3 |
FYI...
Treasury Optimizer - malware update - http://blog.trendmicro.com/treasury-optimi...s-with-malware/ Aug. 30, 2008 - "Treasury Optimizer is an online banking tool offered by Capital One Bank which aims to provide secure access to business accounts on the Web, 24/7. Posed to replace electronic money or more popularly known as eCash, it offers to protect customers’ accounts through security features such as multifactor authentication. Unfortunately, their security offerings come short, as we receive bulks of phishing emails that “promote” the Treasury Optimizer. The phishing mail instructs the client to update their account due to a potential security risk that affects all of Capital One Bank products, including the Treasury Optimizer... The conventional phishing attack aims to capture users’ credentials through fake login pages spammed through email. For this attack however, the phishing link given in the phishing email leads to a page that does not ask for credentials, but tells the user to download a file instead. When the user clicks the link contained in the phishing email, the following spoofed Treasury Optimizer Web page is displayed... The page explains that the bank had to fix (the) vulnerability; and in order to fix it, the client MUST download the update. It even displays different download links for different operating systems. It will then download an .EXE file that poses as an installation setup... The downloaded file is detected by Trend Micro as TROJ_SMALL.MAT. This malware-enhanced phishing attack is neither the typical type of phishing attack, nor is it less dangerous. The scope of a phishing attack is usually limited; one account from a target organization compromised in every successful attack. But this phishing attack installs a malware on the affected user’s system instead, and then uses it to monitor users’ online activities, thus possibly disclosing more information..." (Screenshots available at the URL above.) |
|
|
|
AplusWebMaster SPAM frauds, fakes, and other MALWARE deliveries... Jul 31 2008, 04:55 AM
AplusWebMaster FYI...
Russia-Georgia conflict - malware SPAM
- h... Aug 21 2008, 09:07 AM
AplusWebMaster FYI...
- http://sunbeltblog.blogspot.com/2008/08/... Aug 21 2008, 03:15 PM
AplusWebMaster Spoofs, forgeries, and the like...
FYI...
- http... Aug 26 2008, 09:08 AM
AplusWebMaster FYI...
‘Want to Know Who Deleted You on MSN Live?... Aug 27 2008, 01:13 PM
AplusWebMaster FYI...
Critical Update: Please Patch Windows with... Aug 28 2008, 03:58 AM
AplusWebMaster FYI...
Western Union MTCN #2989115571
- http://ww... Aug 28 2008, 09:03 AM
AplusWebMaster FYI...
Fake celebrity news SPAM - Malicious Code
... Sep 3 2008, 02:42 PM
AplusWebMaster FYI...
Free Online Services attacked...
Misleadin... Sep 4 2008, 03:40 PM
AplusWebMaster FYI...
SPAM campaign targeting US Presidential El... Sep 9 2008, 10:19 AM
AplusWebMaster FYI...
DHS email Scam
- http://www.us-cert.gov/cu... Sep 12 2008, 04:21 AM
AplusWebMaster FYI...
Fake Postcards... Fake Hurricane Relief We... Sep 15 2008, 11:43 AM
AplusWebMaster FYI...
UPS tracking invoice trojan...
- http://is... Sep 17 2008, 06:46 AM
AplusWebMaster FYI...
Fake Careerbuilder sites/phish...
- http:/... Sep 21 2008, 09:10 AM
AplusWebMaster FYI...
Facebook "add friend" Malicious ... Sep 22 2008, 09:19 PM
AplusWebMaster FYI...
Wachovia... spy-phishing rootkit
- http://... Sep 23 2008, 08:45 AM
AplusWebMaster FYI...
American Airlines phish...
- http://securi... Sep 24 2008, 09:24 PM
AplusWebMaster FYI...
World War 3 SPAM
- http://sunbeltblog.blog... Sep 26 2008, 07:18 AM
AplusWebMaster FYI...
Bank fraud emails
- http://www.firstcybers... Sep 26 2008, 12:37 PM
AplusWebMaster FYI...
Same WW3 SPAM... more detail
- http://blog... Sep 30 2008, 09:31 AM
AplusWebMaster FYI...
SPAM using e-mail "delivery receipt... Oct 1 2008, 08:26 AM
AplusWebMaster FYI...
Rogue AV tactics...
- http://blog.trendmic... Oct 4 2008, 06:37 PM
AplusWebMaster FYI...
New YouTube malware tool
- http://blog.tre... Oct 6 2008, 08:54 AM
AplusWebMaster FYI...
Phishermans special: Bank Failures, Merger... Oct 10 2008, 08:38 AM
AplusWebMaster FYI...
Blogspot under push by malware authors
- h... Oct 13 2008, 02:41 PM
AplusWebMaster FYI...
MS e-mail spoofs with malware
- http://blo... Oct 14 2008, 06:21 AM
AplusWebMaster FYI...
MSN Messenger used as lure in malicious SP... Oct 14 2008, 10:41 AM
AplusWebMaster FYI...
Bogus spammed email eTickets - Continental... Oct 20 2008, 01:57 PM
AplusWebMaster FYI...
Malicious BBB Certificate SPAM
- http://se... Oct 22 2008, 10:57 PM
AplusWebMaster FYI...
Election result SPAM malware
- http://secu... Nov 5 2008, 10:00 AM
AplusWebMaster Same (kind of) stuff, same day...
Election result... Nov 5 2008, 01:11 PM
AplusWebMaster FYI...
SPAM from ‘US Treasury’ ...redirects to ma... Nov 10 2008, 05:58 AM
AplusWebMaster FYI...
SPAM - huge drops with McColo demise...
- ... Nov 13 2008, 02:05 PM
AplusWebMaster FYI...
PayPal SPAM warns of fraud - installs Worm... Nov 19 2008, 09:48 PM
AplusWebMaster FYI...
View Bank of America demo ...Owned.
- http... Nov 28 2008, 06:33 AM
AplusWebMaster FYI...
Christmas malicious SPAM already...
- http... Nov 29 2008, 12:17 PM
AplusWebMaster FYI... more holiday SCAMS...
- http://blog.trendm... Nov 30 2008, 06:31 AM
AplusWebMaster FYI...
McDonald's and Coca-Cola - malicious h... Dec 2 2008, 08:23 PM
AplusWebMaster FYI...
SPAM - Malicious attachment / references r... Dec 8 2008, 12:22 PM
AplusWebMaster FYI...
IE 7 exploit... attacks using Doc files
- ... Dec 19 2008, 10:28 AM
AplusWebMaster FYI...
Another holiday, another e-card run - Wale... Dec 22 2008, 11:46 AM
AplusWebMaster FYI...
Christmas e-card malware...
- http://isc.s... Dec 26 2008, 08:28 AM
AplusWebMaster FYI...
More "Fake AV" Incarnations Maki... Dec 30 2008, 07:54 AM
AplusWebMaster FYI...
- http://www.shadowserver.org/wiki/pmwiki.... Jan 1 2009, 10:07 AM
AplusWebMaster FYI...
Twitter-Facebook Phishing...
- http://isc.... Jan 5 2009, 06:42 PM
AplusWebMaster FYI...
HMRC phishing email and website
- http://s... Jan 6 2009, 09:35 AM
AplusWebMaster FYI...
- http://blog.trendmicro.com/bogus-linkedi... Jan 6 2009, 10:01 AM
AplusWebMaster FYI...
MLB.com pushing malware
- http://sunbeltbl... Jan 7 2009, 05:55 AM
AplusWebMaster FYI...
- http://www.shadowserver.org/wiki/pmwiki.... Jan 9 2009, 08:02 AM
AplusWebMaster FYI...
- http://www.us-cert.gov/current/#malware_... Jan 9 2009, 12:51 PM
AplusWebMaster FYI...
Yandex used in SPAM redirects
- http://sun... Jan 12 2009, 09:15 AM
AplusWebMaster FYI...
Malware directed at Classmates Online...
-... Jan 14 2009, 04:12 PM
AplusWebMaster FYI...
Spam, Phishing, and Malware related to Pre... Jan 15 2009, 11:16 AM
AplusWebMaster FYI...
3322 .org
- http://isc.sans.org/diary.html... Jan 19 2009, 08:05 AM
AplusWebMaster FYI...
More Prez SPAM...
- http://www.theregister... Jan 19 2009, 06:06 PM
AplusWebMaster FYI...
Inauguration Themed Waledac - New Tactics ... Jan 20 2009, 12:28 PM
AplusWebMaster FYI...
Phishing Alert - Canada Revenue Agency
- h... Jan 21 2009, 06:28 AM
AplusWebMaster FYI...
United Airlines - e-mail scam malware atta... Jan 23 2009, 05:48 AM
AplusWebMaster FYI...
Valentine SPAM already!...
- http://bl... Jan 26 2009, 02:07 PM
AplusWebMaster FYI...
Fed Reserve Bank phish-about-phish
- http:... Jan 28 2009, 10:03 AM
AplusWebMaster FYI...
Work-At-Home Scams...
- http://www.ic3.gov... Feb 4 2009, 01:07 PM
AplusWebMaster FYI...
4chan.org Malware .gif files...
- http://i... Feb 7 2009, 06:13 PM
AplusWebMaster FYI...
Waledac new variant - Valentine's Day ... Feb 9 2009, 04:30 PM
AplusWebMaster FYI...
Skype Valentine SPAM lure
- http://securit... Feb 12 2009, 06:13 PM
AplusWebMaster FYI...
WALEDAC Valentine SPAM variants on the ris... Feb 14 2009, 07:33 AM
AplusWebMaster FYI...
Re-resurgence of .cn URL SPAM
- https://fo... Feb 17 2009, 09:00 PM
AplusWebMaster FYI...
Anti-virus-1 new rogue anti-spyware...
- h... Feb 19 2009, 10:55 AM
AplusWebMaster FYI...
eBay Auction Tool Web Site Infected With M... Feb 23 2009, 03:19 PM
AplusWebMaster FYI...
eWeek Hacked with drive-by download - Anti... Feb 24 2009, 04:34 PM
AplusWebMaster FYI...
Rogue Facebook apps...
- http://blog.trend... Feb 27 2009, 06:44 AM
AplusWebMaster FYI...
New Koobface worm variant spreading on Fac... Mar 2 2009, 10:25 AM
AplusWebMaster FYI...
Fake job ads up 345%...
- http://www.infor... Mar 5 2009, 09:54 AM
AplusWebMaster FYI...
Scams - Economic Stimulus email and websit... Mar 6 2009, 06:09 AM
AplusWebMaster FYI...
New rogue: Antispyware Pro 2009
- http://s... Mar 8 2009, 06:18 AM
AplusWebMaster FYI...
Fake Windows Support SPAM... Info-Stealer
... Mar 9 2009, 11:27 AM
AplusWebMaster FYI...
ID theft malware rates...
- http://preview... Mar 10 2009, 08:09 AM
AplusWebMaster FYI...
TinyURL phishing...
- http://blog.trendmic... Mar 13 2009, 08:09 AM
AplusWebMaster FYI...
Malicious SPAM run(s), again...
- http://w... Mar 13 2009, 02:53 PM
AplusWebMaster FYI... More rogues...
- http://sunbeltblog.blogsp... Mar 14 2009, 01:18 PM
AplusWebMaster FYI...
Waledac - SPAM new variant theme in the wi... Mar 16 2009, 08:17 AM
AplusWebMaster FYI...
2000 percent increase in web threats - 200... Mar 18 2009, 02:24 PM
AplusWebMaster FYI...
SPAM - fake Comcast, Facebook e-mails
- ht... Mar 20 2009, 04:27 AM
AplusWebMaster FYI...
Antivirus2009 ransomware...
- http://previ... Mar 20 2009, 09:34 AM
LDTate Self Help Guide also found here.
http://forums.wha... Mar 20 2009, 06:35 PM
AplusWebMaster FYI...
Trafficconverter takedown...
- http://www.... Mar 23 2009, 07:52 AM
AplusWebMaster FYI...
Trafficconverter takedown - Downadup motiv... Mar 24 2009, 04:35 AM
AplusWebMaster FYI...
More Malicious SPAM from Pushdo...
- http:... Mar 25 2009, 07:26 AM
AplusWebMaster Some references previous post in this thread:
- ht... Mar 25 2009, 11:40 AM
AplusWebMaster FYI...
Ghostnet - targeted attacks
- http://www.f... Mar 29 2009, 06:33 PM
AplusWebMaster FYI...
Conficker hype used by rogue gangs
- http:... Mar 30 2009, 04:21 PM
AplusWebMaster FYI...
Trace Q1-2009 report
- http://www.marshal.... Apr 2 2009, 01:39 PM
AplusWebMaster FYI...
More Conficker rogue AV...
- https://forum... Apr 3 2009, 10:07 AM
AplusWebMaster FYI...
Malicious Excel XLS file
- http://www.f-se... Apr 7 2009, 08:13 PM
AplusWebMaster FYI...
Match.com malware SPAM
- http://securityla... Apr 8 2009, 05:19 AM
AplusWebMaster FYI...
IRS SPAM fakes and phish...
- http://blog.... Apr 8 2009, 06:26 AM
AplusWebMaster FYI...
Rogue AV on 10M machines
- http://www.dark... Apr 9 2009, 09:44 AM
AplusWebMaster FYI...
NOT the easter egg you were expecting
- ht... Apr 10 2009, 01:54 PM
AplusWebMaster FYI...
Easter worm in Twitter...
- http://www.f-s... Apr 12 2009, 11:18 AM
AplusWebMaster FYI...
Copycat Twitter XSS worms...
- http://isc.... Apr 13 2009, 01:34 PM
AplusWebMaster FYI...
Twitter worm Google searches lead to malwa... Apr 14 2009, 04:55 PM![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
3 | AplusWebMaster | 83 | Today, 03:46 AM Last post by: AplusWebMaster |
|||
![]() |
8 | ZeroMovement | 134 | Today, 12:39 AM Last post by: ZeroMovement |
|||
![]() |
17 | finilpalma | 339 | 20th March 2010 - 04:04 PM Last post by: patndoris |
|||
![]() |
33 | elmkd | 658 | 20th March 2010 - 02:04 PM Last post by: oldman960 |
|||
|
Time is now: 22nd March 2010 - 08:24 AM |