Novi pokušaj zaraze - poziv na sud

poruka: 1
|
čitano: 1.293
|
moderatori: pirat, XXX-Man, vincimus
1
+/- sve poruke
ravni prikaz
starije poruke gore
17 godina
offline
Novi pokušaj zaraze - poziv na sud/Court Notice
Danas sam dobio zabavan spam na email:
Notice of appearance,
You are hereby notified that you are required to attend
the court of Chicago in January 19, 2014 as a defendant
for the hearing of a pirated software case.
Compulsory attendance.
You may have the services of a lawyer, if necessary.
Failure to appear may result in the imposition of sanctions.
More detailed information regarding the case can be found attached to this letter.
Court agent, Chloe Tailor.
:::::::::::::::::::::::::::::::::::::::
Navodno je sad početkom mjeseca ogromna masa ljudi dobila mail, pa zato postam jer naravno sadrži virus.
Evo upozorenja od firme u čije se ime mail lažno predstavlja:
Fraudulent Court Appearance Email
General News 01.06.2014
There has been an email spoof attack that is impersonating the domain name of several large law firms, including Perkins Coie.
This spoof attack involves an email falsely purporting to be from Perkins Coie or another law firm and describing a fictitious court appearance.
Please be aware that it did not originate from Perkins Coie. In addition, please be aware that the email may contain a link to a computer virus.
You should not open the email, any attachments, nor respond to it in any way.
We want to emphasize that this spoofing attack is not the result of any compromise of the security systems at Perkins Coie.

Evo i scana exe fajle:
This malicious email message has an attachment called Court_Notice_Jones_Day_Wa#8127.zip,
which contains the malicious Trojan horse file Court_Notice_Jones_Day_Washington.exe.
Attempts to open the Court_Notice_Jones_Day_Washington.exe file will infect your computer with a Trojan horse.
When scanned the file Court_Notice.exe, the following threats were detected:
W32/Trojan.FYVU-3852
W32/Trojan3.GXT
W32/Zbot.FG!tr
HEUR:Trojan.Win32.Generic

Netko je na http://www.scamwarners.com namjerno pokrenuo na izoliranom stroju exe i kaže
Just for the fun of it all, I downloaded the "ZIP" file to a thumb drive through a Mac, unzipped the "EXE",
and then plugged it into my Windows XP computer (with JUST Windows installed and Microsoft Windows Defender) with the internet disconnected, and ran it.
What it will do is hide all your files and expose all your system files EVERYWHERE
as well as rename itself and/or delete the original and make a copy of itself
as a renamed version of the name of the disk drive that you have it on in the first place.
So, DO NOT WHAT SO EVER DOWNLOAD EVEN THE "ZIP" FILE and Microsoft Windows Defender obviously will not pick up on it.
I also checked my families inboxes and found identical copies of the message.

Čini mi se da bi dakle gore mogla biti inačica onog u Bugu spominjanog Ransomware Cryptolockera?
http://www.bug.hr/forum/post/lcd-plazma-televizori/stvarni-vlasnici-brandova/2909836.aspx
1
Nova poruka
E-mail:
Lozinka:
 
vrh stranice