Welcome! Register for a free account (or login) > How does it work?
|
|


Jul 31 2008, 04:55 AM
Post
#1
|
|
![]() AplusWebMaster ![]() ![]() ![]() ![]() ![]() Group: Authentic Member Posts: 4,565 Joined: 30-December 03 From: USA Member No.: 1,643 Operating System: XP/SP3 |
FYI...
Airlines - infected ticket invoices... Attachment contains same Trojan horse that stole 1.6M records from Monster.com last year - http://preview.tinyurl.com/66ayhz July 28, 2008 (Computerworld) - "Several airlines, including Delta Air Lines Inc. and Northwest Airlines Corp., have warned customers that bogus e-mails posing as ticket invoices contain malware and urged them to immediately delete the messages. A researcher at McAfee Inc. confirmed the campaign in a post to the company's blog*. The e-mails, which purport to be from an airline, thank the recipient for using a new "Buy flight ticket Online" service on the airline's site, provide a log-in username and password, and say the person's credit card has been charged an amount usually in the $400 range. An attachment claims to be the invoice for the ticket and credit card charge..." * http://www.avertlabs.com/research/blog/ind...m-takes-flight/ More... - http://www.f-secure.com/weblog/archives/00001477.html July 30, 2008 - "... Today when we saw a large spam run sending out fake JetBlue etickets... The mail contains a ZIP file that contains the file eTicket#1721.exe which we detect as Trojan-Spy:W32/Zbot.QO. The malware itself tries to steal usernames and passwords to online banks..." (Screenshot available at the F-secure URL above.) - http://www.us-cert.gov/current/#airline_e_...et_email_attack July 31, 2008 This post has been edited by AplusWebMaster: Aug 5 2008, 04:29 AM |
|
|
|
![]() |
Jan 14 2009, 04:12 PM
Post
#2
|
|
![]() AplusWebMaster ![]() ![]() ![]() ![]() ![]() Group: Authentic Member Posts: 4,565 Joined: 30-December 03 From: USA Member No.: 1,643 Operating System: XP/SP3 |
FYI...
Malware directed at Classmates Online... - http://securitylabs.websense.com/content/Blogs/3279.aspx 01.14.2009 - "Websense... noticed that a campaign against Classmates Online, Inc had broken out. We observed that thousands of URLs were registered in one day to spread the worm. The newly-registered URLs were unusually long, had several subdomains, and always contained some specific words such as process, multipart and so on... The new campaign was spread by email. The malicious email contained a link to a video invitation to reunite high school classmates and celebrate Classmates Day 2009. When the email recipient viewed the invitation, they downloaded a worm named Adobe_Player10.exe. This could fool a user into thinking they needed the latest version of the Adobe Player, prompting them to run the executable... the main purpose of this worm was to steal user information and send it to a server located in the Ukraine. The address of the server was hardcoded in the worm. The worm did a lot of work, including dropping a driver file to hide itself, injecting itself into every process, downloads and so on. It collected several kinds of information, including details about POP3, IMAP, ICQ, FTP, and certification from the user's MY certificate store, which is used to store trusted sites and personal certificates... The worm injected itself in every process. The injected code would enum a module of the process, and then hook some APIs into the module..." (Screenshots available at the Websense URL above.) |
|
|
|
AplusWebMaster SPAM frauds, fakes, and other MALWARE deliveries... Jul 31 2008, 04:55 AM
AplusWebMaster FYI...
Russia-Georgia conflict - malware SPAM
- h... Aug 21 2008, 09:07 AM
AplusWebMaster FYI...
- http://sunbeltblog.blogspot.com/2008/08/... Aug 21 2008, 03:15 PM
AplusWebMaster Spoofs, forgeries, and the like...
FYI...
- http... Aug 26 2008, 09:08 AM
AplusWebMaster FYI...
‘Want to Know Who Deleted You on MSN Live?... Aug 27 2008, 01:13 PM
AplusWebMaster FYI...
Critical Update: Please Patch Windows with... Aug 28 2008, 03:58 AM
AplusWebMaster FYI...
Western Union MTCN #2989115571
- http://ww... Aug 28 2008, 09:03 AM
AplusWebMaster FYI...
Treasury Optimizer - malware update
- htt... Aug 31 2008, 08:08 AM
AplusWebMaster FYI...
Fake celebrity news SPAM - Malicious Code
... Sep 3 2008, 02:42 PM
AplusWebMaster FYI...
Free Online Services attacked...
Misleadin... Sep 4 2008, 03:40 PM
AplusWebMaster FYI...
SPAM campaign targeting US Presidential El... Sep 9 2008, 10:19 AM
AplusWebMaster FYI...
DHS email Scam
- http://www.us-cert.gov/cu... Sep 12 2008, 04:21 AM
AplusWebMaster FYI...
Fake Postcards... Fake Hurricane Relief We... Sep 15 2008, 11:43 AM
AplusWebMaster FYI...
UPS tracking invoice trojan...
- http://is... Sep 17 2008, 06:46 AM
AplusWebMaster FYI...
Fake Careerbuilder sites/phish...
- http:/... Sep 21 2008, 09:10 AM
AplusWebMaster FYI...
Facebook "add friend" Malicious ... Sep 22 2008, 09:19 PM
AplusWebMaster FYI...
Wachovia... spy-phishing rootkit
- http://... Sep 23 2008, 08:45 AM
AplusWebMaster FYI...
American Airlines phish...
- http://securi... Sep 24 2008, 09:24 PM
AplusWebMaster FYI...
World War 3 SPAM
- http://sunbeltblog.blog... Sep 26 2008, 07:18 AM
AplusWebMaster FYI...
Bank fraud emails
- http://www.firstcybers... Sep 26 2008, 12:37 PM
AplusWebMaster FYI...
Same WW3 SPAM... more detail
- http://blog... Sep 30 2008, 09:31 AM
AplusWebMaster FYI...
SPAM using e-mail "delivery receipt... Oct 1 2008, 08:26 AM
AplusWebMaster FYI...
Rogue AV tactics...
- http://blog.trendmic... Oct 4 2008, 06:37 PM
AplusWebMaster FYI...
New YouTube malware tool
- http://blog.tre... Oct 6 2008, 08:54 AM
AplusWebMaster FYI...
Phishermans special: Bank Failures, Merger... Oct 10 2008, 08:38 AM
AplusWebMaster FYI...
Blogspot under push by malware authors
- h... Oct 13 2008, 02:41 PM
AplusWebMaster FYI...
MS e-mail spoofs with malware
- http://blo... Oct 14 2008, 06:21 AM
AplusWebMaster FYI...
MSN Messenger used as lure in malicious SP... Oct 14 2008, 10:41 AM
AplusWebMaster FYI...
Bogus spammed email eTickets - Continental... Oct 20 2008, 01:57 PM
AplusWebMaster FYI...
Malicious BBB Certificate SPAM
- http://se... Oct 22 2008, 10:57 PM
AplusWebMaster FYI...
Election result SPAM malware
- http://secu... Nov 5 2008, 10:00 AM
AplusWebMaster Same (kind of) stuff, same day...
Election result... Nov 5 2008, 01:11 PM
AplusWebMaster FYI...
SPAM from ‘US Treasury’ ...redirects to ma... Nov 10 2008, 05:58 AM
AplusWebMaster FYI...
SPAM - huge drops with McColo demise...
- ... Nov 13 2008, 02:05 PM
AplusWebMaster FYI...
PayPal SPAM warns of fraud - installs Worm... Nov 19 2008, 09:48 PM
AplusWebMaster FYI...
View Bank of America demo ...Owned.
- http... Nov 28 2008, 06:33 AM
AplusWebMaster FYI...
Christmas malicious SPAM already...
- http... Nov 29 2008, 12:17 PM
AplusWebMaster FYI... more holiday SCAMS...
- http://blog.trendm... Nov 30 2008, 06:31 AM
AplusWebMaster FYI...
McDonald's and Coca-Cola - malicious h... Dec 2 2008, 08:23 PM
AplusWebMaster FYI...
SPAM - Malicious attachment / references r... Dec 8 2008, 12:22 PM
AplusWebMaster FYI...
IE 7 exploit... attacks using Doc files
- ... Dec 19 2008, 10:28 AM
AplusWebMaster FYI...
Another holiday, another e-card run - Wale... Dec 22 2008, 11:46 AM
AplusWebMaster FYI...
Christmas e-card malware...
- http://isc.s... Dec 26 2008, 08:28 AM
AplusWebMaster FYI...
More "Fake AV" Incarnations Maki... Dec 30 2008, 07:54 AM
AplusWebMaster FYI...
- http://www.shadowserver.org/wiki/pmwiki.... Jan 1 2009, 10:07 AM
AplusWebMaster FYI...
Twitter-Facebook Phishing...
- http://isc.... Jan 5 2009, 06:42 PM
AplusWebMaster FYI...
HMRC phishing email and website
- http://s... Jan 6 2009, 09:35 AM
AplusWebMaster FYI...
- http://blog.trendmicro.com/bogus-linkedi... Jan 6 2009, 10:01 AM
AplusWebMaster FYI...
MLB.com pushing malware
- http://sunbeltbl... Jan 7 2009, 05:55 AM
AplusWebMaster FYI...
- http://www.shadowserver.org/wiki/pmwiki.... Jan 9 2009, 08:02 AM
AplusWebMaster FYI...
- http://www.us-cert.gov/current/#malware_... Jan 9 2009, 12:51 PM
AplusWebMaster FYI...
Yandex used in SPAM redirects
- http://sun... Jan 12 2009, 09:15 AM
AplusWebMaster FYI...
Spam, Phishing, and Malware related to Pre... Jan 15 2009, 11:16 AM
AplusWebMaster FYI...
3322 .org
- http://isc.sans.org/diary.html... Jan 19 2009, 08:05 AM
AplusWebMaster FYI...
More Prez SPAM...
- http://www.theregister... Jan 19 2009, 06:06 PM
AplusWebMaster FYI...
Inauguration Themed Waledac - New Tactics ... Jan 20 2009, 12:28 PM
AplusWebMaster FYI...
Phishing Alert - Canada Revenue Agency
- h... Jan 21 2009, 06:28 AM
AplusWebMaster FYI...
United Airlines - e-mail scam malware atta... Jan 23 2009, 05:48 AM
AplusWebMaster FYI...
Valentine SPAM already!...
- http://bl... Jan 26 2009, 02:07 PM
AplusWebMaster FYI...
Fed Reserve Bank phish-about-phish
- http:... Jan 28 2009, 10:03 AM
AplusWebMaster FYI...
Work-At-Home Scams...
- http://www.ic3.gov... Feb 4 2009, 01:07 PM
AplusWebMaster FYI...
4chan.org Malware .gif files...
- http://i... Feb 7 2009, 06:13 PM
AplusWebMaster FYI...
Waledac new variant - Valentine's Day ... Feb 9 2009, 04:30 PM
AplusWebMaster FYI...
Skype Valentine SPAM lure
- http://securit... Feb 12 2009, 06:13 PM
AplusWebMaster FYI...
WALEDAC Valentine SPAM variants on the ris... Feb 14 2009, 07:33 AM
AplusWebMaster FYI...
Re-resurgence of .cn URL SPAM
- https://fo... Feb 17 2009, 09:00 PM
AplusWebMaster FYI...
Anti-virus-1 new rogue anti-spyware...
- h... Feb 19 2009, 10:55 AM
AplusWebMaster FYI...
eBay Auction Tool Web Site Infected With M... Feb 23 2009, 03:19 PM
AplusWebMaster FYI...
eWeek Hacked with drive-by download - Anti... Feb 24 2009, 04:34 PM
AplusWebMaster FYI...
Rogue Facebook apps...
- http://blog.trend... Feb 27 2009, 06:44 AM
AplusWebMaster FYI...
New Koobface worm variant spreading on Fac... Mar 2 2009, 10:25 AM
AplusWebMaster FYI...
Fake job ads up 345%...
- http://www.infor... Mar 5 2009, 09:54 AM
AplusWebMaster FYI...
Scams - Economic Stimulus email and websit... Mar 6 2009, 06:09 AM
AplusWebMaster FYI...
New rogue: Antispyware Pro 2009
- http://s... Mar 8 2009, 06:18 AM
AplusWebMaster FYI...
Fake Windows Support SPAM... Info-Stealer
... Mar 9 2009, 11:27 AM
AplusWebMaster FYI...
ID theft malware rates...
- http://preview... Mar 10 2009, 08:09 AM
AplusWebMaster FYI...
TinyURL phishing...
- http://blog.trendmic... Mar 13 2009, 08:09 AM
AplusWebMaster FYI...
Malicious SPAM run(s), again...
- http://w... Mar 13 2009, 02:53 PM
AplusWebMaster FYI... More rogues...
- http://sunbeltblog.blogsp... Mar 14 2009, 01:18 PM
AplusWebMaster FYI...
Waledac - SPAM new variant theme in the wi... Mar 16 2009, 08:17 AM
AplusWebMaster FYI...
2000 percent increase in web threats - 200... Mar 18 2009, 02:24 PM
AplusWebMaster FYI...
SPAM - fake Comcast, Facebook e-mails
- ht... Mar 20 2009, 04:27 AM
AplusWebMaster FYI...
Antivirus2009 ransomware...
- http://previ... Mar 20 2009, 09:34 AM
LDTate Self Help Guide also found here.
http://forums.wha... Mar 20 2009, 06:35 PM
AplusWebMaster FYI...
Trafficconverter takedown...
- http://www.... Mar 23 2009, 07:52 AM
AplusWebMaster FYI...
Trafficconverter takedown - Downadup motiv... Mar 24 2009, 04:35 AM
AplusWebMaster FYI...
More Malicious SPAM from Pushdo...
- http:... Mar 25 2009, 07:26 AM
AplusWebMaster Some references previous post in this thread:
- ht... Mar 25 2009, 11:40 AM
AplusWebMaster FYI...
Ghostnet - targeted attacks
- http://www.f... Mar 29 2009, 06:33 PM
AplusWebMaster FYI...
Conficker hype used by rogue gangs
- http:... Mar 30 2009, 04:21 PM
AplusWebMaster FYI...
Trace Q1-2009 report
- http://www.marshal.... Apr 2 2009, 01:39 PM
AplusWebMaster FYI...
More Conficker rogue AV...
- https://forum... Apr 3 2009, 10:07 AM
AplusWebMaster FYI...
Malicious Excel XLS file
- http://www.f-se... Apr 7 2009, 08:13 PM
AplusWebMaster FYI...
Match.com malware SPAM
- http://securityla... Apr 8 2009, 05:19 AM
AplusWebMaster FYI...
IRS SPAM fakes and phish...
- http://blog.... Apr 8 2009, 06:26 AM
AplusWebMaster FYI...
Rogue AV on 10M machines
- http://www.dark... Apr 9 2009, 09:44 AM
AplusWebMaster FYI...
NOT the easter egg you were expecting
- ht... Apr 10 2009, 01:54 PM
AplusWebMaster FYI...
Easter worm in Twitter...
- http://www.f-s... Apr 12 2009, 11:18 AM
AplusWebMaster FYI...
Copycat Twitter XSS worms...
- http://isc.... Apr 13 2009, 01:34 PM
AplusWebMaster FYI...
Twitter worm Google searches lead to malwa... Apr 14 2009, 04:55 PM![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
9 | km1234 | 138 | Today, 09:35 AM Last post by: Conspire |
|||
![]() |
25 | Charlene Reeves | 372 | Yesterday, 02:54 PM Last post by: LDTate |
|||
![]() |
28 | elmkd | 490 | Yesterday, 02:13 PM Last post by: elmkd |
|||
![]() |
12 | hubbcap_86 | 209 | Yesterday, 12:56 PM Last post by: hubbcap_86 |
|||
|
Time is now: 16th March 2010 - 11:19 AM |