Search our Spoof Library...
Another Spoof Email and Phishing Scam report by MillerSmiles.co.uk - click this image to go to our home page.

Plasma TV - Email Scam (pcihotup.com)
5th March 2004

please forward any scams you've received to spoof@millersmiles.co.uk

 

Report Summary
Date Reported
5th March 2004
Apparent Sender
could vary and is a spoofed
Return Address
could vary and uses spoofed address
Subject
none
Format
HTML - designed to look like text only
Method
disguised link leads to a web page containing a Trojan Horse - Trojan.ByteVerify
Bogus Web Content?
Yes
URL of web content
http://comsearchtechnologies.com/
RISK LEVEL
Medium
WARNINGS

1. Also attempts to include a malicious script within the email from a remote server to over write your svchosts.exe file
2. The trojan horse embedded within the bogus web page attempts to exploit a vulnerability in Microsoft VM (a fix was released in June 2003 - see here for more info)

 

Will the worry of a $4,490.50 Plasma TV order make you follow the link to a bogus web page with a Trojan Horse prgram embedded in its code?...

 

This email (see image below) came directly to one of our own inboxes, and gives details of an apparent purchase of a Panasonic Plasma TV for the grand total of $4,490.50. Most recipients would be very worried to receive such an email and would undoubtedly follow the link provided to ensure their financial security.

There are two problems with this email scam ... the first comprises an attempt to include a file located on a remote server within the email itself, which is coded to over write your svchosts.exe file which would open the door to your system for the scammers.

The second, is that the link (disguised, and actually sends you to http://comsearchtechnologies.com/ which is a web page with a Trojan Horse program embedded in it in such a way as to download itself to your system. The trojan horse program is called Trojan.ByteVerify which is designed to exploit a vulnerability in Microsoft VM (Java Virtual Machine) which can allow a hacker to gain access to your system.

The vulnerability was first acknowledged and a fix issued by Microsoft in June 2003, so systems that have been updated will not be at risk. Please ensure that you run Wiondows Update on a daily basis and before surfing the web.

 

The Email ...

Plasma TV - Email Scam (pcihotup.com) - email

 

The bogus web page...

Plasma TV - Email Scam (pcihotup.com) - web page

 

Stay informed of the latest Spoof Email Phishing Scams with either of our FREE alert services...
 

Stay informed of the latest Spoof Email Phishing Scams with either of our FREE alert services...

Email Alerts
Add your email address to our email alert service...
Subscribe

Privacy Policy

RSS News Feed
Tap into our Scam Alert service using your News Reader or Aggregator (including My Yahoo!).
Scam Alert News Feed

You can even put the latest alerts on your own web site.

Click here to learn more about RSS News Feeds and our Scam Alert Service!

Resources links - use one of the links below to access more information on Spoof Email & Phishing Scams.

Library of Spoof Email Phishing Scams

Brief guide to Phishing

Full article on spoof email scams

Spoof URL Checker

Link Checker

Browser URL Spoofing Vulnerability Check

Latest browser bug aids Phishing Scams - beware!

Destinations - other resources available on the MillerSmiles.co.uk web site.

Click the arrow to return to previous page

Home

Guides...

Book Terminology

How to identify a first edition book

Auction Watcher

List of the main Auction Sites world wide