Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed
126 Pages « < 5 6 7 8 9 > » Bottom

Outline · [ Standard ] · Linear+

 HobbyTiam v25, Welcome to OtaTiam :x

views
     
TSHenryLow
post Oct 10 2008, 09:26 AM

liddat oso can, you win liao lor.
Group Icon
VIP
4,336 posts

Joined: Jan 2003
From: BOLEHLand
QUOTE(edan1979 @ Oct 10 2008, 08:57 AM)
it seemms... like it is a damn nasty virus... lots of ppl said avoid it at all cost... google found me this...

CODE
"Bank of America Installation and Upgrade Warning."

The bad guys are busy today, here's another fake bank "upgrade" leading to malware, following on from this one.
   Subject: Bank of America Installation and Upgrade Warning.
   From: "Bank Of America Update Service Department"
   Date: Wed, August 27, 2008 2:23 pm

   Attention All Bank of America Customers.
   Security & Fraud Protection Update.

   At Bank of America, were committed to keeping your information confidential and
   secure, and we take that responsibility very seriously.
   Our Fraud detection solution helps to protect your business against the risk of
   fraudulent transactions alerting you to potential risks.
   We have developed the following protection tools to insure you confidentiality.

   You can download the latest security pack from our Customer Service Department>>

   Sincerely, Jodie William.
   2008 Bank of America Corporation. All rights reserved.

This leads to a very convoluted URL with an executable Setup_BankofAmericaclientno4508832.exe - virus detection for this one is a bit poor. Malware is identified variously as TR/ATRAPS.Gen (AntiVir & WebWasher), DeepScan:Generic.Malware.dld!!.083539B0 (BitDefender) and one or two others come up with a generic detection.

Incidentally, the URLs used in both attacks are incredibly long and convoluted.. and not terribly convincing.

Avoid these "bank certificates" at all costs.

Labels: Viruses


it use browser... so i think the b**** is in the cache file/temp internet files...
*
but weird, i restart pc, never open anything also already detected... doh.gif
chriswoo
post Oct 10 2008, 09:28 AM

Getting Started
**
Junior Member
98 posts

Joined: Oct 2006



QUOTE(HenryLow @ Oct 10 2008, 09:26 AM)
but weird, i restart pc, never open anything also already detected... doh.gif
*
that means your other drives already infected with virus liao. The best solution is to clean reinstall and 1st step is install antivirus then check the entire drives and see got any virus bo.

This post has been edited by chriswoo: Oct 10 2008, 09:30 AM
yamyinhao
post Oct 10 2008, 09:33 AM

New Member
*
Junior Member
26 posts

Joined: May 2008


QUOTE(edan1979 @ Oct 10 2008, 09:26 AM)
you guys aaaaa... everything also want to format ka??? doh.gif
*
nolah bro edan my pc already infected with virus even i scan using internet virus scan it cannot be clean . therefore not dare to format since the technician told me format will spoil the hdd

so i tahan till now already 1 years yesterday abang chris and others said format many many time also no problem so i formatlah since no important data inside


chriswoo
post Oct 10 2008, 09:36 AM

Getting Started
**
Junior Member
98 posts

Joined: Oct 2006



QUOTE(edan1979 @ Oct 10 2008, 09:26 AM)
you guys aaaaa... everything also want to format ka??? doh.gif
*
FORMAT!!!!!!!!!!!!! PURGE!!!!!!!!!!!!! DESTROY !!!!!!!!!!!!!!!!!! MUUUHAAAAAAAAAA !!!!!!!!! whistling.gif
TSHenryLow
post Oct 10 2008, 09:43 AM

liddat oso can, you win liao lor.
Group Icon
VIP
4,336 posts

Joined: Jan 2003
From: BOLEHLand
otadan, finally i solved it jor... mayb la... so far no detected... after i deleted all the certificates from IE & Firefox... doh.gif
yamyinhao
post Oct 10 2008, 09:47 AM

New Member
*
Junior Member
26 posts

Joined: May 2008


QUOTE(HenryLow @ Oct 10 2008, 09:43 AM)
otadan, finally i solved it jor... mayb la... so far no detected... after i deleted all the certificates from IE & Firefox... doh.gif
*
that good news if you don't mind telling me how to delete the certificates from IE

if next time my pc get virus maybe can solve it by deleting the certificates


edan1979
post Oct 10 2008, 09:48 AM

*GruMpy_MoDe*
*******
Senior Member
5,517 posts

Joined: Jun 2006
From: On Earth.



i always google for a new virus and send the info to my staff one... so they dont do stupid thing... doh.gif

preventing it to be happen is better... tongue.gif


Added on October 10, 2008, 9:48 amhmmm it should be...

prevent it before it happen is good.. doh.gif


Added on October 10, 2008, 9:49 amhenry... check in the registry for left out registry of the files... it must be there also...

This post has been edited by edan1979: Oct 10 2008, 09:49 AM
TSHenryLow
post Oct 10 2008, 09:52 AM

liddat oso can, you win liao lor.
Group Icon
VIP
4,336 posts

Joined: Jan 2003
From: BOLEHLand
QUOTE(edan1979 @ Oct 10 2008, 09:48 AM)
i always google for a new virus and send the info to my staff one... so they dont do stupid thing... doh.gif

preventing it to be happen is better... tongue.gif


Added on October 10, 2008, 9:48 amhmmm it should be...

prevent it before it happen is good.. doh.gif


Added on October 10, 2008, 9:49 amhenry... check in the registry for left out registry of the files... it must be there also...
*
registry there i donno the file name ler...
edan1979
post Oct 10 2008, 09:53 AM

*GruMpy_MoDe*
*******
Senior Member
5,517 posts

Joined: Jun 2006
From: On Earth.



try search for something like the virus name...
yamyinhao
post Oct 10 2008, 09:56 AM

New Member
*
Junior Member
26 posts

Joined: May 2008


QUOTE(edan1979 @ Oct 10 2008, 09:48 AM)
i always google for a new virus and send the info to my staff one... so they dont do stupid thing... doh.gif

preventing it to be happen is better... tongue.gif


Added on October 10, 2008, 9:48 amhmmm it should be...

prevent it before it happen is good.. doh.gif


Added on October 10, 2008, 9:49 amhenry... check in the registry for left out registry of the files... it must be there also...
*
if you don't mind bro edan can share where to find this registry sweat.gif
TSHenryLow
post Oct 10 2008, 09:56 AM

liddat oso can, you win liao lor.
Group Icon
VIP
4,336 posts

Joined: Jan 2003
From: BOLEHLand
QUOTE(edan1979 @ Oct 10 2008, 09:53 AM)
try search for something like the virus name...
*
the virus name??? okok...
tq bro... smile.gif
chriswoo
post Oct 10 2008, 09:59 AM

Getting Started
**
Junior Member
98 posts

Joined: Oct 2006



lol maybe henry go to some special website then kena 1 brows.gif
edan1979
post Oct 10 2008, 10:04 AM

*GruMpy_MoDe*
*******
Senior Member
5,517 posts

Joined: Jun 2006
From: On Earth.



QUOTE(yamyinhao @ Oct 10 2008, 09:56 AM)
if you don't mind bro edan can share where to find this registry  sweat.gif
*
err... find using regedit la... sweat.gif
chriswoo
post Oct 10 2008, 10:11 AM

Getting Started
**
Junior Member
98 posts

Joined: Oct 2006



edan1979 your VF25 got any thing loose bo after a few tranformation?
edan1979
post Oct 10 2008, 10:14 AM

*GruMpy_MoDe*
*******
Senior Member
5,517 posts

Joined: Jun 2006
From: On Earth.



being transform quite a lot.... nothing loose... yet... tongue.gif lining on 75%... doing it right now
chriswoo
post Oct 10 2008, 10:20 AM

Getting Started
**
Junior Member
98 posts

Joined: Oct 2006



oo nice nice hope today mine arrive biggrin.gif

This post has been edited by chriswoo: Oct 10 2008, 10:20 AM
TSHenryLow
post Oct 10 2008, 10:21 AM

liddat oso can, you win liao lor.
Group Icon
VIP
4,336 posts

Joined: Jan 2003
From: BOLEHLand
^ arrive ma... the letter from kastam... tongue.gif
edan1979
post Oct 10 2008, 10:30 AM

*GruMpy_MoDe*
*******
Senior Member
5,517 posts

Joined: Jun 2006
From: On Earth.



^hehehe... if letter from kastam arrive wacko.gif
TSHenryLow
post Oct 10 2008, 10:34 AM

liddat oso can, you win liao lor.
Group Icon
VIP
4,336 posts

Joined: Jan 2003
From: BOLEHLand
lao... december... tongue.gif

» Click to show Spoiler - click again to hide... «

ashchia
post Oct 10 2008, 10:39 AM

Getting Started
**
Junior Member
105 posts

Joined: Oct 2005
From: The Great Brittania Empire
^ lao, that one price skyrock jor sweat.gif Malaysia currency now so weak

126 Pages « < 5 6 7 8 9 > » Top
Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.0266sec    1.17    6 queries    GZIP Disabled
Time is now: 18th December 2025 - 09:03 AM