.
/v3-uk/news/2003863/spoof-email-tricks-aol-users
23 Sep 2005, Ken Young , V3
An email scam is targeting AOL customers in an attempt to steal personal details, according to web monitoring company Websense.
Users receive a spoofed email purporting to come from the security department at AOL claiming that the company suffered a security breach over the weekend and that confidential information may have been compromised.
The email also requests users to connect to a website to download and install a new 'security patch', which will 'protect their information'. The spoofed message reads:
'Failure to download this security patch in the next 48 hours will result in the temporary suspension of your America Online account. At this point we will send you a Security Patch CD in the mail. Upon installing it, your account will be reactivated.'
When users click on the link, they are redirected to a website hosted in Scotland which downloads a piece of malicious code, named patch.scr, written in Visual Basic and using Yoda Crypt.
When the file is run, a wizard opens to guide users through the disclosure of their confidential account and billing information, including their account limit. Once this information is obtained, it is sent in a text file via FTP to an account at a hosting facility.
Ross Paul, product marketing manager at Websense, said: "This is a blended threat that we haven't seen before. It combines the threat of a security breach with a link to a download that masquerades as a patch but in fact requests sensitive user information.
"The kind of questions it asks should alert you to the fraud because your provider already has those details."
Do you agree?
GMAIL TOO!!!
I had a similar to the email sent to the aol users. It stated that my "account will be terminated" if I didnt follow a link. Thank You for posting this information for aol users, for you have saved me.
Posted by Fultz, 23 Sep 2005
Is AOL asleep?
I had a similar experience last night, Oct. 4. I recognized that it was a scam and notified AOL immediately. REmoving the popup was extremely difficult. AOL should put an urgent notice on its opening screen warning its users about this scam before more people get hurt!
Posted by Jack, 05 Oct 2005
trojans
I block 008 remote keylogger and freescratchandwin virtually every day,only AOL anti spyware detects them. I have 4 other anti spyware programmes which consistently fail to find them. Several online discussions with AOL to remedy the problem have been unsuccessful.
Posted by David, 28 Oct 2005
I got spoofed
Someone sent a spoof email to me too. Although it was a friend, websites like hoaxmail.co.uk are making it increasingly easy to do this...
Posted by Sarah Parker, 05 May 2007