Showing posts with label trojan virus. Show all posts
Showing posts with label trojan virus. Show all posts

Friday, September 9, 2011

Inbox - VIRUS ALERT "NACHA security nitification" 8764.zip - una variante de Win32/Kryptik.RZB Troyano - eliminado

This email should be forward by UK residents to

Fraud Authority | Home Office


www.homeoffice.gov.uk/agencies-public-bodies/nfa/
The National Fraud Authority (NFA) works with the counter-fraud community to make ... The National Fraud Authority's Business Plans, Annual Reports, Annual ...

De: :account manager [account.manager@nacha.com]
Envidado: Wed 8/3/2011 7:15 AM
Para: webmaster@itccommunications.net
Asunto: NACHA security nitification


Dear Valued Client,

We strongly believe that your account may have been compromised. Due to this, we cancelled the last ACH transactions:

-(ID: 32344428)
-(ID: 69895293)

initiated from your bank account by you or any other person, who might have access to your account.

Detailed report on initiated transactions and reasons for cancellation can be found in the attachment.


__________ Alerta de ESET NOD32 Antivirus, versión de la base de firmas de virus 6450 (20110909) __________

Alerta, ESET NOD32 Antivirus ha encontrado las siguientes amenazas en este mensaje:

    Report-8764.zip - una variante de Win32/Kryptik.RZB Troyano - eliminado
      Report-8764.zip > ZIP > Report-8764.exe - una variante de Win32/Kryptik.RZB Troyano - era parte de un objeto eliminado

Friday, August 19, 2011

Inbox - VIRUS ALERT "Uniform traffic ticket" no-reply 2 [no-reply.2@nyc.gov] Win32/Kryptik.RAM Troyano VIRUS

New York State — Department of Motor Vehicles
UNIFORM TRAFFIC TICKET
POLICE AGENCY
NEW YORK STATE POLICE>
Local Police Code
THE PERSON DESCRIBED ABOVE IS CHARGED AS FOLLOWS
Time
7:25 AM
Date of Offense
07/05/2011
IN VIOLATION OF
NYS V AND T LAW
Description of Violation
SPEED OVER 55 ZONE

TO PLEAD, PRINT OUT THE ENCLOSED TICKET AND SEND IT TO TOWN COURT, CHATAM HALL., PO BOX 117

attachment details ATT00031 txt.95.b (the same fucking bastard crook that sent this one - put him away for good to rot in hell)

Alerta, ESET NOD32 Antivirus ha encontrado las siguientes amenazas en este mensaje:

Ticket-728-2011.zip - una variante de Win32/Kryptik.RAM Troyano - eliminado
Ticket-728-2011.zip > ZIP > Ticket-728-2011.exe - una variante de Win32/Kryptik.RAM Troyano - era parte de un objeto eliminado

Monday, August 15, 2011

Inbox - VIRUS ALERT "support 8 [support.8@ups.com]" attachment ATT00031.txt (93.b) contains trojan virus

Dear customer.


The parcel was sent your home address.
And it will arrive within 3 business day.

More information and the tracking number are attached in document below.

Thank you.

Copyright © 1994-2011 United Parcel Service of America, Inc. All rights reserved.

__________ Alerta de ESET NOD32 Antivirus, versión de la base de firmas de virus 6379 (
Alerta, ESET NOD32 Antivirus ha encontrado las siguientes amenazas en este mensaje:

UPS_document.zip - una variante de Win32/Kryptik.RAM Troyano - eliminado
UPS_document.zip > ZIP > UPS_Document.exe - una variante de Win32/Kryptik.RAM Troyano - era parte de un objeto eliminado


Google Search

  1. 03:10:39 UPS-CN-01@cn.pintschbamag.com [smtp reception rejected ...

    spam-monitor.weblucid.de/live.php?n=37&l=15052986
    03:06:22, LiliaCurnow@johnbrannen.com [known spam sender blacklisted]. 03:06:20, info.8@ups.com [known spam sender blacklisted]. 03:06:08, support.2@ups.com ...
  2. 01:39:19 support.8@ups.com [smtp reception rejected] 01:38:38 ...

    spam-monitor.weblucid.de/live.php?n=34&l=14939472
    01:35:39, UPS-CN-01@cn.pintschbamag.com [smtp reception rejected]. 01:35:22 ...
  3. 02:00:28 hideo.takashironn@dsaga.itochustahl.de [known spam sender ...

    spam-monitor.weblucid.de/live.php?n=34&l=15051911
    01:40:30, fcgs@gxom.com [known spam sender blacklisted]. 01:40:07, juegen ...

Saturday, April 9, 2011

Inbox - VIRUS ALERT "Express delivery" the crook sent several of these without the attachment ATT00017.txt (95b) during this week


-----original message-----
 From: Express delivery [express.deliveryv4@yahoo.com]
To:
Date: Sat 4/9/2011 12:45 PM
Subject: Express delivery

Dear customer

The parcel was sent your home adress
And it will arrive within 10 business days

More information and the tracking number
are attached in document below.

Thank You

© 1994-2011 Express Services, Inc.

Note - if you know people that send viruses report them to their your local police - It is a CRIMINAL OFFENCE and the sender could be sentences to prison


____Alerta de ESET NOD32 Antivirus, versión de la base de firmas de virus  __________

Alerta, ESET NOD32 Antivirus ha encontrado las siguientes amenazas en este mensaje:

doc.zip - una variante de Win32/TrojanDownloader.Stohil.O Troyano - eliminado
doc.zip > ZIP > doc.exe - una variante de Win32/TrojanDownloader.Stohil.O Troyano - era parte de un objeto eliminado



Monday, March 14, 2011

Inbox - VIRUS ALERT - bastard who is going to rot in HELL Al Frank [rljust@swcp.com]



Dear customer.

The parcel was sent your home address.
And it will arrive within 7 business day.

More information and the tracking number are attached in document below.

Thank you.
© FedEx 1995-2011

__________ Alerta de ESET NOD32 Antivirus,

Alerta, ESET NOD32 Antivirus ha encontrado las siguientes amenazas en este mensaje:

FedEx.zip - una variante de Win32/TrojanDownloader.Agent.QPH Troyano - eliminado
FedEx.zip > ZIP > FedEx.exe - una variante de Win32/TrojanDownloader.Agent.QPH Troyano - era parte de un objeto eliminado

http://www.eset.com


to send a trojan virus is a crime 
do you have a friend that engages in this practice?
report them to the police - they really are not true friends

Saturday, December 11, 2010

yahoo.es - SPAM ALERT "entimación" "notificación-mpf.scr" que al pulsarlo descarga un virus "troyano"

Uno de los propósitos principales de este sitio es para advertir al público de las estafas, normalmente los que recibimos en nuestra en la caja, pero hoy en día cuando fuimos a recoger nuestro correo de Yahoo nos encontramos con esta advertencia de virus y sentir que es nuestro deber para publicarlo. Ayer fue uno de Inglés nos advierte de no abrir una tarjeta de Hallmark, que también contienen un virus - el famoso ZEUS

Según ha informado hoy la Dirección General de la Policía, el correo "spam" ha sido detectado por agentes especializados en la lucha contra el ciberdelito de la Brigada de Investigación Tecnológica (BIT), encargados de hacer seguimiento de este tipo de correos para evitar su difusión a través de internet.

El correo policia@goberno.es se envía con el asunto "entimación" y los mensajes que contiene hacen alusión a una supuesta "Notificación de asistencia en la audiencia en el procedimiento de investigación de que se trata en esta conducta regional".

Además, los correos electrónicos contienen un enlace denominado "notificación-mpf.scr" que al pulsarlo descarga un virus "troyano" de procedencia brasileña que infecta el ordenador del usuario.

La BIT ha solicitado a los ciudadanos que pongan en conocimiento de la Policía Nacional los incidentes que detecten en internet a través de la página web www.policia.es, con el fin de evitar la difusión de todo tipo de software malicioso.

Asimismo, los especialistas de la Policía Nacional recomiendan eliminar directamente este correo y no pulsar sobre los enlaces que se adjuntan en él.

Tuesday, October 19, 2010

Inbox - Russian Crook annoyed at exposure 2nd email "Your Fedreal Tax Payment has been rejected. Report ID: 0103770916"

A second email was sent later yesterday, this time with a virus in the email as the crook did not like it that we had exposed their scam that by clicking the link you could get a virus - The Trojan was isolated by our anti-virus software - yesterday´s exposure

<18/10/2010> a: con asunto Your Federal Tax Payment has been rejected in syt fechado Mon, 18 Oct 2010 16:55:16 +0300 HTML/Fraud.AV Troyano contiene archivos infectados USUARIO-JZLINCP\John Se ha detectado una amenaza recibiendo un mensaje a través de esta aplicación: C:\Archivos de programa\outlook express\msimn.exe.

----- Original Message -----
Sent: Monday, October 18, 16:26:30 PM
Subject: Your Fedreal Tax Payment has been rejected. Report ID: 0103770916

EFTPS ONLINE
THE EASEIST (spelling) WAY TO PAY YOUR FEDREAL (spelling) TAXES

Your Federal Tax Payment ID: 01037597414 has been not accepted.


Pelase, make sure that all informaiton you have submtited is correct and refer to Code R21 to find out the inforamtion (the scammer cannot spell information correctly so is not from the USA or the tax department )
about comapny pamyent. Pelase cotnact this page if you have any questions:
http://eftps.gov/R21
the real link http://1lifetv.com/p9vwzb5/red3.html is not the one shown. You are stongly advised not to click on it as it could contain a trojan virus

Rteurn Reason Code R21 (the scammer cannot spell return correctly so is not from the USA or the tax department) - The idnetification nmuber you entreed in the Copmany Identifciation Feild is not functional. Try senidng informaiton to your acconutant adivser using other opitons.

EFTPS: The Electronic Federal Tax Payment System

WARNING!
You are uisng (the scammer cannot spell using correctly so is not from the USA or the tax department) an Official United States Government System, which may be used only for authroized (the scammer cannot spell using authorized so is not from the USA or the tax department) purposes. Unauthorized modification of any information stored on this sytsem may result in criminal prosecution.(the scammer will be the one to face criminal prosecution) The Govenrment may monitor and audit the usage of system, and all perosns are hereby notified that the use of this system consittutes cnosent to such monitoring and auditing. Unauthorized attempts to upload inforamtion and/or change information on this web site are srtictly prohibited and are subject to prosectuion (the scammer cannot spell prosecution correctly so is not from the USA or the tax department)under theComptuer Farud and Abuse Act of 1986 and Title 18 U.S.C. Sec. 1001 and 1030.
Retu