Welcome Guest ( Log In | Register )

(Today, 06:46 AM) richmond
--
good morning all
(Today, 03:44 AM)
--
Rookie Blue 1x11 To Serve or Protect (torrent) has just been added.
(Today, 03:30 AM) DavidoLabido
--
oooooi oooooi
(Today, 03:18 AM)
--
Futurama 6x12 The Mutants Are Revolting (torrent) has just been added.
(Today, 01:37 AM) BladeD
--
hey richmond
(Today, 12:03 AM) richmond
--
hi Tellus
(Yesterday, 11:52 PM) richmond
--
hi all hi bladed
(Yesterday, 08:22 PM)
--
Dead Snow 2009 1080p BRRip H264 (torrent) has just been added.
(Yesterday, 08:22 PM)
--
Letters To Juliet 2010 816p BRRip H264 (torrent) has just been added.
(Yesterday, 05:29 PM) BladeD
--
holla
(Yesterday, 05:28 PM)
--
Rush 3x07 uNtitled (torrent) has just been added.
(Yesterday, 05:06 PM)
--
Psych 5x08 Shawn 2.0 (torrent) has just been added.
(Yesterday, 01:10 PM) Tellus
--
#"*¤¤!!! Hello all
(Yesterday, 01:09 PM) Tellus
--
stargate
(Yesterday, 12:04 PM) richmond
--
hi all
ShoutOut! © InvisionMint
Float?

MediaDefender Virus Scam Targets Torrent Site Users

This topic is about MediaDefender Virus Scam Targets Torrent Site Users, the author, richmm, wrote about: During the last few days a virus scam targeting torrent site users has reappeared. Internet users receive an email informing them they have been monit ... To read more just scroll down

> 

 
Reply to this topicStart new topic
> MediaDefender Virus Scam Targets Torrent Site Users
richmm
post Jun 30 2009, 01:32 PM
Post #1
Hexxagon Champion! Breakout Champion! Great Mahjong: Classic Champion! Galagon 2004 Champion! Garage Door Tennis Champion! Blow Up: Arcade Champion! Homers Beer Run Champion! Poux Champion! Yeti Long Ass Shot 2 Champion! Yeti Sports 7 - Snowboard Freeride Champion! Extreme Pinball Champion!


Advanced Member
Group Icon

Group: sVIP
Received 1100 Thanks
Posts: 3,628
Joined: 26-December 03
From: Wonderland
Member No.: 358





During the last few days a virus scam targeting torrent site users has reappeared. Internet users receive an email informing them they have been monitored by anti-piracy company MediaDefender on various torrent sites. Although a log file is included to ‘prove’ infringements, it contains what is being described as a “banking trojan”.

The latest in a long line of scams targeting email users is attempting to capitalize on the increasing number using BitTorrent sites.

Targets of the scam receive an unsolicited email purporting to come from notorious anti-piracy company MediaDefender. The email, which is simply addressed “Dear User!” claims the individual has been monitored on any of several torrent sites while engaging in anything from copyright infringement, through to simply browsing the sites.

Of course, citing MediaDefender is a nonsense, since that company doesn’t get involved in anti-piracy warning letters - its specialty was spoofing on BitTorrent networks.

Additionally, most of the sites listed don’t even operate a tracker, so committing any type of copyright infringements on them is almost impossible. Here is the body of the email;

Pirate Scam Spam
QUOTE
Dear User!

Your recent internet activity was logged on the following sites:

* Btjunkie
* SumoTorrent
* isoHunt
* Btscene
* Mininova
* Fenopy
* Monova
* Yotoshi
* GetInvites
* Btmon

hxxp://XXXXX.net/report_78478XX.exe (XX added by TorrentFreak)

We have a report about the copyrighted movies, music, softwares you downloaded or searched on these webpages. We strongly advise you to stop any future activities regarding the downloading of illegal content or you can expect prosecution by 17 U.S.C.512,1201?1205,1301?1332; 28 U.S.C. 4001 laws.

Sincerely,

MediaDefender Inc.


So what is this scam all about? Attached to the email is a logfile which supposedly provides additional information about the user’s infringements, but of course this is a lie - the log is really a virus.

This type of scam is nothing new - the same type of thing has been tried before, probably by the same people. However, this time the virus is different. Here is the report, courtesy of ThreatExpert;

Threat characteristics of ZBot - a banking trojan that disables firewall, steals sensitive financial data (credit card numbers, online banking login details), makes screen snapshots, downloads additional components, and provides a hacker with the remote access to the compromised system. Creates a startup registry entry. Contains characteristics of an identified security risk.

Savvy Internet users will hopefully realize the email is a scam fairly quickly, but hardened file-sharers should smell a rat even earlier due to the omission of demands for money.

Source.
Go to the top of the page
 
+

Reply to this topicStart new topic
Tags
No Tag inserted yet

1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 






RSS Lo-Fi Version | SEO by MinervaSEO © Icelabz.net Time is now: 3rd September 2010 - 11:18 AM