PDA

View Full Version : Verizon wireless users beware...


MT Mike
November 20th, 2009, 17:35
of the latest scam:

Fake Verizon 'balance-checker' is a Trojan
By Robert McMillan
November 13, 2009 07:56 PM ET Comments(7)Recommended(16)DiggTwitterShare/Email
Comments


IDG News Service - Cyber-criminals have started preying on Verizon Wireless customers, sending out spam e-mail messages that say their accounts are over the limit and offering them a "balance checker" program to review their payments.

The e-mail messages, which look like they come from Verizon Wireless, are fakes; the balance checker is actually a malicious Trojan horse program.

"If you run the tool, obviously, your computer is toast," said Nick Bilogorskiy, manager of antivirus research at SonicWall. "You get infected with a Trojan that SonicWall catches under the name Regrun."

The scammers started sending out the messages around 11:30 a.m. Pacific on Friday, and they quickly flooded the Internet with their spam. Within a few hours, SonicWall had intercepted the messages at about 16 percent of its customers, Bilogorskiy said.

That translates to about 200,000 messages per hour on SonicWall's sensors. "The volume of these e-mails is just huge," Bilogorskiy said.

Victims who download the software open up a back door to their computer, where more malware can be downloaded from the Zbot botnet, which is known for stealthily lifting online banking credentials and emptying accounts. For the bad guys, the payoff is big. Recently, the U.S. Federal Bureau of Investigation said this type of financial fraud has removed US$100 million from U.S. bank accounts.

Criminals are always looking for new ways to trick people into downloading their software, and this billing-cycle scam is simply the latest, Bilogorskiy said.

http://www.computerworld.com/s/article/9140842/Fake_Verizon_balance_checker_is_a_Trojan?source=CT WNLE_nlt_virusv_2009-11-19

ChiXJeff
November 20th, 2009, 19:15
Not just Verizon. I got one for Vodafone (not a customer) as well as another service that I do use.

Short story is *NEVER*, *NEVER*, NEVER run an attachment in email.

DrMoab
November 20th, 2009, 19:17
Short story is *NEVER*, *NEVER*, NEVER run an attachment in email.

Unless it's something you expect from someone you know.

5-90
November 20th, 2009, 19:26
Which is why I won't even send an image file "cold" - I'll let you know it's coming.

Ever hear of "steganography?"

RichP
November 21st, 2009, 14:00
Unless it's something you expect from someone you know.

Even that depends, if it's from my sister that attachment gets scanned with everything I got and even then it gets opened on a unix box :D

GSequoia
November 21st, 2009, 22:25
Unless it's something you expect from someone you know.

Then just make sure the wife and kids aren't around. :scottm:

DrMoab
November 22nd, 2009, 10:09
Then just make sure the wife and kids aren't around. :scottm:

Yeah or that dude who always seems to be sitting in your kitchen with a camera crew and a stern look on his face.