Sorry your browser is not supported!

You are using an outdated browser that does not support modern web technologies, in order to use this site please update to a new browser.

Browsers supported include Chrome, FireFox, Safari, Opera, Internet Explorer 10+ or Microsoft Edge.

Geek Culture / Warning to all users who connect via BT

Author
Message
David R
21
Years of Service
User Offline
Joined: 9th Sep 2003
Location: 3.14
Posted: 14th Aug 2005 14:16
I have just recieved an email from 'support@bt.com' 'informing' me that my connection was being upgraded to 2 megabits per second.

On this email, a program was attached called 'setup.exe'. It all looked very valid, and the program (and the email) both had a digital signature attached to them.

I was pretty sure it was a fake though (the last line of the email said "Virtually yours, the BT support team', but since I had some decent AV (nod32 & Panda AV 05) I decided to run it anyway (just to see what it was).

Beware. This application appeared to do nothing; however it changes any dial-up connection it can find, and changes the number to a premium rate one (I have both a 56k connection and BB).

I was able to correct this change, and no damage was done. But, please be wary of seemingly genuine BT emails

I know its stupid to run apps that are attached to emails, but the email had a digital signature, a PGP keycode etc. and appeared very valid (excluding the app)

Anyone else recieved an email like this?


################Dream::Catcher#################
ITS COMING. NOVEMBER 1ST
OSX Using Happy Dude
21
Years of Service
User Offline
Joined: 21st Aug 2003
Location: At home
Posted: 14th Aug 2005 14:38
Quote: "Anyone else recieved an email like this?"

No - but I dont use BT...

But why on earth did you run it ? Companies dont send out executables, and anyway for an upgrade you dont need to do anything...

Perhaps you were at the happy juice again...

AtomZ - its got an A. Its got a Z. Now its just needs U
Blog:http://spaces.msn.com/members/BouncyBrick/
Web Site:http://www.nicholaskingsley.co.uk
David R
21
Years of Service
User Offline
Joined: 9th Sep 2003
Location: 3.14
Posted: 14th Aug 2005 14:43
Quote: "But why on earth did you run it ? Companies dont send out executables, and anyway for an upgrade you dont need to do anything..."


I ran it just to see what it was

It the typical human curiosity. I fixed the problem that it caused - but I just wanted to see what it was

Quote: "Perhaps you were at the happy juice again... "

Ran out last week actually MuSt GgeT MoRE JUIce


################Dream::Catcher#################
ITS COMING. NOVEMBER 1ST
OSX Using Happy Dude
21
Years of Service
User Offline
Joined: 21st Aug 2003
Location: At home
Posted: 14th Aug 2005 14:46
Quote: "It the typical human curiosity"

Not me - I just delete it no matter what...

AtomZ - its got an A. Its got a Z. Now its just needs U
Blog:http://spaces.msn.com/members/BouncyBrick/
Web Site:http://www.nicholaskingsley.co.uk
Darkbasic MADPSP
19
Years of Service
User Offline
Joined: 15th Jun 2005
Location: Uk
Posted: 14th Aug 2005 14:54
Spy ware and be run a virus scan could be a datamine that show all your passwords to whoever sent it on or off the net!

See you at the convention!
dark coder
22
Years of Service
User Offline
Joined: 6th Oct 2002
Location: Japan
Posted: 14th Aug 2005 15:08
i think his firewall would have detected if it tried to access the net :-x


Darkbasic MADPSP
19
Years of Service
User Offline
Joined: 15th Jun 2005
Location: Uk
Posted: 14th Aug 2005 15:13 Edited at: 14th Aug 2005 16:09
not all the time i had a firewall when stage 9 spyware was on my pc and it didn't find it and viruses can get by firewall

See you at the convention!
Raven
19
Years of Service
User Offline
Joined: 23rd Mar 2005
Location: Hertfordshire, England
Posted: 14th Aug 2005 16:03
Not to be funny, but open an attachment on an e-mail without checking it is just asking for trouble.

Microsoft Anti-Spyware automatically scans programs for malware. It would catch anything changing in the registry and ask your permission about it.

Just some simple precaution software is all you need. I've not had any Virii on here since stripping all of the protection software I was and relying on Windows XP's built-in protection.

Still check each week using AVG and Norton. If one doesn't catch something the other should. Not having either on the system itself helps make sure they don't see each other as a threat. (which they will). Also have both do checks for files I'm about to upload.

Kinda simple you don't need to surf with the internet locked up to be safe, you just need to be smart about it. The more levels of protection you can put in the less likely anything can go wrong, but there's no reason to cause your own computer to slow down as a result. (hense why I keep older hardware, cheap to run and can be used specifically for this stuff)

David R
21
Years of Service
User Offline
Joined: 9th Sep 2003
Location: 3.14
Posted: 14th Aug 2005 17:18
Quote: " Not to be funny, but open an attachment on an e-mail without checking it is just asking for trouble"


I did scan the app first, however I believe it was compressed in some way (like with UPX) so it was not primarily detected as a virus


################Dream::Catcher#################
ITS COMING. NOVEMBER 1ST
Darkbasic MADPSP
19
Years of Service
User Offline
Joined: 15th Jun 2005
Location: Uk
Posted: 14th Aug 2005 17:22
So i was right!!

Love games go to http://www.freewebs.com/halorc
or
http://www.freewebs.com/gamersmad
Grog Grueslayer
Valued Member
19
Years of Service
User Offline
Joined: 30th May 2005
Playing: Green Hell
Posted: 15th Aug 2005 08:35 Edited at: 15th Aug 2005 08:36
Quote: "I have just recieved an email from 'support@bt.com' 'informing' me that my connection was being upgraded to 2 megabits per second."


Back when I had Earthlink I got stuff from them that my account is about to be canceled if I don't update my username and password on a webpage they provided. I was with Earthlink for about 9 years... and this is the first time they've done that... since it screamed scam I just deleted all messages like that. My account was still going strong after months of getting messages from "Earthlink".

What made me mad is the message came though Earthlinks mail server... and the people at Earthlink knew they were doing it but refused to delete messages from these scammers.

I was pretty loyal till Verison offered DSL in my area... I had to switch.
Phaelax
DBPro Master
21
Years of Service
User Offline
Joined: 16th Apr 2003
Location: Metropia
Posted: 15th Aug 2005 10:15
Only virus I got from a cable company was from Time Warner. Though they didn't send it to me in an email, ohhhh no. Anyone remember Code Red?

PETA - People for the Eating of Tasty Animals
Darkbasic MADPSP
19
Years of Service
User Offline
Joined: 15th Jun 2005
Location: Uk
Posted: 16th Aug 2005 16:40
Code red?

Love games go to http://www.freewebs.com/halorc
or
http://www.freewebs.com/gamersmad
David R
21
Years of Service
User Offline
Joined: 9th Sep 2003
Location: 3.14
Posted: 16th Aug 2005 16:43
Was a virus. And a nasty one at that

Luckily I avoided all that. I was in florida for 2 weeks when the 'epidemic' hit (since my PC hadn't been turned on) . By the time I came back, it'd died down a bit


Login to post a reply

Server time is: 2024-11-15 16:34:12
Your offset time is: 2024-11-15 16:34:12