Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar Mark Forums Read
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 11-08-2004, 11:48 PM   #1
EscortBiz
Fuck Checks, CASH only!
 
Join Date: May 2002
Location: New York City
Posts: 19,422
New Crazy Virus - Might Explain the Escrow.com thing

beaware peopel

http://www.theregister.com/2004/11/04/phishing_exploit/

Fraudsters have developed phishing emails capable of automatically stealing bank log-in details without requiring users to click on a website link, email filtering firm MessageLabs warns.

Over the last two weeks, MessageLabs has monitored a small number of these dangerous new emails, which are capable of sidestepping the need for user intervention in phishing attacks. Users who only open maliciously constructed emails to be exposed to risk. These emails contain scripts that rewrite the host files of targeted machines.

This means that next time a user attempts to access their online banking account they will be automatically redirected to a fraudulent website instead, enabling their log-in details to be stolen. So far, MessageLabs has only intercepted copies of emails targeting three Brazilian banks, but if the technique catches on it could have potentially serious consequences.

A defence is available. Providing surfers have Windows Scripting Host disabled they are not at risk from this particular type of phishing attack. MessageLabs said the technique illustrated the increased sophistication of phishing techniques fraudsters are developing.

Alex Shipp, senior anti-virus technologist at MessageLabs, said: "By reducing the need for user intervention, the perpetrators are making it easier to dupe users into handing over the contents of their bank accounts. Most banks have advised their customers to be wary of any email asking for personal banking details, but in this case all they have to do is open an apparently innocent email and their bank details could be silently sabotaged.

"We currently detect between 80 and 100 new phishing websites a day, showing just how prolific the threat has become. It is a moving target, making it harder to identify and defend against," he added. ®
EscortBiz is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-08-2004, 11:54 PM   #2
Dirty F
Too lazy to set a custom title
 
Dirty F's Avatar
 
Industry Role:
Join Date: Jul 2001
Posts: 59,204
sers who only open maliciously constructed emails to be exposed to risk.

Will people EVER learn?
Dirty F is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-08-2004, 11:56 PM   #3
EscortBiz
Fuck Checks, CASH only!
 
Join Date: May 2002
Location: New York City
Posts: 19,422
Quote:
Originally posted by Battuss
sers who only open maliciously constructed emails to be exposed to risk.

Will people EVER learn?
No so its important to alert people
EscortBiz is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-08-2004, 11:57 PM   #4
datatank
Confirmed User
 
datatank's Avatar
 
Join Date: Aug 2004
Location: My dog is blacker than Tupac
Posts: 5,471
Quote:
Originally posted by EscortBiz
beaware peopel

http://www.theregister.com/2004/11/04/phishing_exploit/

Fraudsters have developed phishing emails capable of automatically stealing bank log-in details without requiring users to click on a website link, email filtering firm MessageLabs warns.

Over the last two weeks, MessageLabs has monitored a small number of these dangerous new emails, which are capable of sidestepping the need for user intervention in phishing attacks. Users who only open maliciously constructed emails to be exposed to risk. These emails contain scripts that rewrite the host files of targeted machines.

This means that next time a user attempts to access their online banking account they will be automatically redirected to a fraudulent website instead, enabling their log-in details to be stolen. So far, MessageLabs has only intercepted copies of emails targeting three Brazilian banks, but if the technique catches on it could have potentially serious consequences.

A defence is available. Providing surfers have Windows Scripting Host disabled they are not at risk from this particular type of phishing attack. MessageLabs said the technique illustrated the increased sophistication of phishing techniques fraudsters are developing.

Alex Shipp, senior anti-virus technologist at MessageLabs, said: "By reducing the need for user intervention, the perpetrators are making it easier to dupe users into handing over the contents of their bank accounts. Most banks have advised their customers to be wary of any email asking for personal banking details, but in this case all they have to do is open an apparently innocent email and their bank details could be silently sabotaged.

"We currently detect between 80 and 100 new phishing websites a day, showing just how prolific the threat has become. It is a moving target, making it harder to identify and defend against," he added. ®
Get help get computer help ;)
datatank is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:04 AM   #6
OzMan
Confirmed User
 
OzMan's Avatar
 
Join Date: Sep 2003
Location: Los Begas
Posts: 9,162
Quote:
Originally posted by Battuss
sers who only open maliciously constructed emails to be exposed to risk.

Will people EVER learn?
Maliciously constructed but innocent looking.

It is hard enough to convince people not to click on .exe .bat.dat etc attachments in their email.

Now to explain to them that just opening an innocent looking email could be dangerous?

Forget it. Just disable windows scripting host and get Uncle Fred, Grandma etc to install Anti virus/spyware and keep it updated so they don't keep calling us "experts" up every other day to come fix their comps
OzMan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:11 AM   #7
Doctor Dre
Too lazy to set a custom title
 
Doctor Dre's Avatar
 
Industry Role:
Join Date: Jan 2001
Posts: 51,692
;) I haven't got a virus for a longgggggg time now
__________________
Quote:
Originally Posted by rayadp05 View Post
I rebooted, deleted temp files, history, cookies and everything...still cannot view the news clip. All I see is that fucking gay ass music video from "Rick Roll". Anyone else have a different link to the news clip?
Doctor Dre is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:13 AM   #8
KRL
Entrepreneur
 
Join Date: Oct 2002
Location: USA
Posts: 31,429
Yeh heard about that one.
__________________
If you would like to develop your domains, you can lease inexpensive foreign labor
from the leaders in the field at iWebmasters.com TO LOWER YOUR COSTS AND INCREASE YOUR PRODUCTION!

*** *** *** *** *** *** *** *** *** *** *** ***
Domains Adult News KRL's Newsletter Biz Tips Just Listed Domains
KRL is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:16 AM   #9
Vitasoy
GFY HALL OF FAME DAMMIT!!!
 
Join Date: Oct 2003
Posts: 58,202
Quote:
Originally posted by Doctor Dre
;) I haven't got a virus for a longgggggg time now
Congrats! Would you like a cookie? ;)
__________________


[email protected]
Vitasoy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:22 AM   #10
Steen2
Confirmed User
 
Join Date: Feb 2004
Location: Vancouver, Canada
Posts: 7,662
I feel sorry for the people who don't know a lot about computers and get spyware. It's so easy to get talked into, and for some it completely ruins their computer.
__________________
ICQ: 2262.73945
Steen2 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:25 AM   #11
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
Whats the dif between VBS and VBE ?
i have both
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:36 AM   #12
beemk
CLICK HERE
 
Industry Role:
Join Date: Jan 2002
Posts: 20,829
Quote:
Originally posted by Doctor Dre
;) I haven't got a virus for a longgggggg time now
wow, you must own a computer or something.
__________________
I host with Vacares
beemk is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:39 AM   #13
J B
Confirmed User
 
Join Date: May 2002
Location: StatsRemote.com
Posts: 1,804
Just make your hosts file read-only
__________________


A HUGE TIME SAVER FOR LESS THAN $1 PER DAY!



Contact: support A|T statsremote D|O|T com

J B is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 12:57 AM   #14
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
where is it located ?

Quote:
Originally posted by J B
Just make your hosts file read-only
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 01:05 AM   #15
Tat2Jr
Confirmed User
 
Tat2Jr's Avatar
 
Join Date: Feb 2001
Location: Sunny California
Posts: 4,882
I'm so behind in the times..... I think it's fucking CRAZY to do your banking online.
__________________
NICHE MONEY >> Ass WorshipPantiesSolo TeenPantyhose
Serving up exclusive fetish sites since 1997!
Tat2Jr is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 01:11 AM   #16
KMR Stitch
I am cool
 
Join Date: Jul 2003
Posts: 14,494
it's an EXE file.


It has picutres that can be extracted.

Yes it does do all of what he said Search for my posts.
KMR Stitch is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 04:05 AM   #17
gwilkins
Confirmed User
 
Join Date: Feb 2004
Location: Vancouver, BC
Posts: 744
Quote:
Originally posted by J B
Just make your hosts file read-only


For the guy that asked:
\windows\system32\drivers\etc\

It's a text file called "hosts" (no extension)
gwilkins is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 05:54 AM   #18
mardigras
Bon temps!
 
Join Date: Feb 2003
Location: down yonder
Posts: 14,194
Note, the HOSTS file is in use when Windows is running and can't be directly modified. It can be done in DOS but a simpler method is to use a program to do it. Hostman is a freeware I've used several times and works fine.
http://www.haztek-software.com/?page=hostman
__________________
.
mardigras is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 10:43 AM   #19
EscortBiz
Fuck Checks, CASH only!
 
Join Date: May 2002
Location: New York City
Posts: 19,422
Quote:
Originally posted by mardigras
Note, the HOSTS file is in use when Windows is running and can't be directly modified. It can be done in DOS but a simpler method is to use a program to do it. Hostman is a freeware I've used several times and works fine.
http://www.haztek-software.com/?page=hostman
cool prog
EscortBiz is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 10:53 AM   #20
reynold
Too lazy to set a custom title
 
Join Date: Oct 2002
Location: Global Traveler
Posts: 51,271
have heard about it, doesn't look threathning enough.
reynold is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 10:55 AM   #21
KingAsher
Confirmed User
 
Join Date: Aug 2004
Posts: 685
Good looking out man, just got an email from them offering to buy one of my sites just deleted it. Thanks!!!!
__________________
Asher Hardt
Matrix Content Inc.
www.matrixcontent.com
ICQ: 160132354
AIM: Ashermatrix
E-mail: [email protected]


KingAsher is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 11:10 AM   #22
Jer
God is Brazilian
 
Join Date: Feb 2001
Location: Brazil
Posts: 10,601
Fucking brazilian scammers. They're stealing millions.

I have accounts on one of these banks.
Jer is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-09-2004, 11:11 AM   #23
Jer
God is Brazilian
 
Join Date: Feb 2001
Location: Brazil
Posts: 10,601
The police caught over 50 persons the last few weeks.
Jer is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks
Thread Tools



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.