All Things Techie With Huge, Unstructured, Intuitive Leaps
Showing posts with label computer virus. Show all posts
Showing posts with label computer virus. Show all posts

Watch out for the "What's App Web" Spam Virus/Malware


I just got this piece of crap spam malware/virus injector in my mail.  It came directly from a friend's gmail account so obviously he picked up the malware from somebody.

Don't click on it.  Notice the spelling error in the word "length".  The domain with the link comes from maloureyes.com. That doesn't mean anything, because typically these spammers hack a relatively untended website, inject their crap from there without the owner being the wiser.

Interesting that they would try to play off the Whats App name.  Don't be fooled.

Newest Form of Spam Virus Injection-- The Vanity Spam


The latest form of spam with the intent to put a virus on my machine is the vanity spam.  They think that I am vain enough to have my name in a fake who's who.  Read it and weep:

JT Richards
To Me
Nov 22
Hello,

As you are more than likely aware, you were recently selected 
for inclusion in the new 2013 edition of the Who's Who Among 
Executives and Professionals.

Despite our efforts, we have not yet received confirmation of 
your biographical profile, and are reaching out to you again 
in an effort to do so.

Click here to verify and confirm your profile

The tradition of the Who's Who reaches back more than 
100 years to a time when the prestigious and accomplished 
were featured in a yearly publication that defined high society.

Today, the Who's Who provides a useful resource where business 
professionals, academics, and Executives are both recognized for 
their achievements and provided with an unparalleled networking 
resource. Using our database, you can make global contacts, 
discuss current events and happenings with your peers, and 
establish yourself as either a mentor to aspiring professionals or 
further your business network.

Our goal is to seek out the premier executives and professionals 
throughout the world. There is absolutely no cost or obligation 
for your biographical profile. Simply click this link to fill out 
the appropriate biographical fields.


Sincerely,

JT Richards
Managing Director
Who's Who Among Executives and Professionals



To change your communication options please click this link 
or write to:

3635 S. Fort Apache Rd, Suite 200 - 637
Las Vegas, NV 89147


The Virus Domain where the mail comes from is www.dotfluid.com.  There is no website.  The address that is listed is for a U-Haul truck rental.

Needless to say, that if you get one of these, don't click any of the links.

Virus Injection Domain ~ Someone in Portugal Please Lay a Beating on this guy

I have an acquaintance named Dwight who is a nice guy. I met him at a dinner party in Nassau at a mutual friends place. Nassau is a small place and I occasionally ran into him. Dwight was transferred back to Florida. I haven't heard from him in a long while. Thus I was pleased when I saw an email from him in my inbox. However, I was not pleased when I saw that it was a virus generated email going through his contact list sending out links that will infect your machine.

I am sure you have seen these latest viruses. You get an email from one of your trusted contacts that says "Hey look at this". When you click on it, BANG -- you're infected.

Well, its time to fight back. Here is the domain name registration of the sub-human sending out these viruses. It is from Portugal. If there is anyone in Portugal who is an anti-social psychopath who is just itching to lay a beating on someone, go to the town or Porto (yes where port comes from). Find the street Rua Barao de Nova Sintra, and the building number is No. 433. Ring the bell for apartment 3530 and beat the living crap out of the guy, and while you are at it, smash all of the computers and cell phones.

The domain of virus injector is: dunil.pt. Don't click on it.

WHOIS information for dunil.pt:

Nome de dom?nio / Domain Name: dunil.pt
Data de registo / Creation Date (dd/mm/yyyy): 04/12/2000
Data de expira??o / Expiration Date (dd/mm/yyyy): 28/02/2013
Estado / Status: ACTIVE
Titular / Registrant

Dunil - Confeccoes Lda
Rua Barao de Nova Sintra, No. 433
Apartado 3530

4306-901 Porto

Email: dunil@ip.pt

Entidade Gestora / Billing Contact
G9SA - Telecomunicacoes S.A .
Email: geral@g9sa.pt

Respons?vel T?cnico / Tech Contact
Joao Carlos Ramos Perdigoto
Email: perdigot@interacesso.pt

Update: Got another virus mailing from Dwight's machine. This one came from Malaysia. (They shouldn't let half-civilized monkey goons play on the internet). Here are the domain registration details:

Chan Kee Siak
Exabytes Network Sdn Bhd
1-18-8, Suntech @ Penang Cybercity
Lintang Mayang Pasir 3, Bayan Baru
11950 Bayan Lepas
Pulau Pinang
Malaysia
@exabytes.com.my
(Tel) 604-6308283
(Fax) 604-6308288

g [Registrant Code] DENAI1.ORG
Denai Solutions Sdn Bhd
(531969-A)
38-5-2 Jalan 1/101C
Cheras Business Center, Cheras
56100 Kuala Lumpur
Wilayah Persekutuan
(Tel) 03-91334299
(Fax) 03-91411266

h [Administrative Contact Code] KHIZYAHA0.CON
Khuzaif Yahaya
Denai Solutions Sdn Bhd
Level 12, Bangunan MAS
Jalan Sultan Ismail
50250 Kuala Lumpur
Wilayah Persekutuan
Malaysia
@hotmail.com
(Tel) 03-20523909
(Fax) 03-21649405