Click here to Skip to main content
15,891,136 members

Welcome to the Lounge

   

For discussing anything related to a software developer's life but is not for programming questions. Got a programming question?

The Lounge is rated Safe For Work. If you're about to post something inappropriate for a shared office environment, then don't post it. No ads, no abuse, and no programming questions. Trolling, (political, climate, religious or whatever) will result in your account being removed.

 
GeneralRe: Latest Email Scam Pin
User 1013254615-Aug-14 0:48
User 1013254615-Aug-14 0:48 
GeneralRe: Latest Email Scam Pin
PhilLenoir15-Aug-14 3:48
professionalPhilLenoir15-Aug-14 3:48 
JokeRe: Latest Email Scam Pin
ZurdoDev14-Aug-14 9:58
professionalZurdoDev14-Aug-14 9:58 
GeneralRe: Latest Email Scam Pin
R. Erasmus14-Aug-14 20:46
R. Erasmus14-Aug-14 20:46 
GeneralRe: Latest Email Scam Pin
Sander Rossel14-Aug-14 21:11
professionalSander Rossel14-Aug-14 21:11 
GeneralRe: Latest Email Scam Pin
Cristian Amarie14-Aug-14 22:05
Cristian Amarie14-Aug-14 22:05 
GeneralRe: Latest Email Scam Pin
adudley25615-Aug-14 4:30
adudley25615-Aug-14 4:30 
GeneralRe: Latest Email Scam Pin
Cristian Amarie15-Aug-14 8:07
Cristian Amarie15-Aug-14 8:07 
It just appeared on our radar 24 hours or less.
AFAIK, signature will get released any time from our AV labs as well.

It's also a polymorphic one (if I got this one right), that's why analysts performs more tests on this one.

Also, if one reads VirusTotal list, it can be seen that:
- two vendors name it Trojan.Win32.Kryptik.BCISU and second Trojan.Win32.Kryptik.CISU (good thing a letter differ between two different vendors)
- others name it Trojan/Generic or Malware Gen, which is usually another name for "we know is doing something bad but we don't really know what is"
- Symantec signed it with Suspicious.Cloud.5 which is documented from 2010, but the virus is first seen on 2014/08/14 (yesterday); I don't know what to think here
- Sophos name it AIJV[^] and also mention it as AviraTR/Agent.CISU.1 (CISU again !)

All in all, I'm not in an AV guy, but I know enough to read between the lines that this is
1. an 1-day item
2. drops on computer only if clicked and downloaded and executed (from Dropbox in the sample I have seen)
3. quite easy to detect and remove (registry key modification, relatively large size - 188 Kb)

* * *
That does not mean it is something the regular user can ignore.
But they do.
No matter how many times I tell my father
"if someone you don't know and looks suspicious pops up at the door, do you let him in? it's the same with programs; you don't know what is, you don't trust who did it or why pops, close it and never look back"
he keeps clicking on Yes on anything it moves.
I promised myself than one day I will do a MessageBox with something like
"Is your mom a very nasy slut?"
I bet that at least 75% of the users will click on yes.
GeneralRe: Latest Email Scam Pin
G-Tek15-Aug-14 2:23
G-Tek15-Aug-14 2:23 
GeneralRe: Latest Email Scam Pin
908236515-Aug-14 3:19
908236515-Aug-14 3:19 
GeneralRe: Latest Email Scam Pin
Tomz_KV15-Aug-14 2:39
Tomz_KV15-Aug-14 2:39 
GeneralRe: Latest Email Scam Pin
Alexander DiMauro15-Aug-14 2:54
Alexander DiMauro15-Aug-14 2:54 
GeneralRe: Latest Email Scam Pin
PhilLenoir15-Aug-14 4:00
professionalPhilLenoir15-Aug-14 4:00 
GeneralRe: Latest Email Scam Pin
edmurphy9915-Aug-14 3:57
edmurphy9915-Aug-14 3:57 
GeneralRe: Latest Email Scam Pin
MehGerbil15-Aug-14 5:03
MehGerbil15-Aug-14 5:03 
GeneralRe: Latest Email Scam Pin
MarkRHolbrook15-Aug-14 3:58
MarkRHolbrook15-Aug-14 3:58 
GeneralRe: Latest Email Scam Pin
Cristian Amarie15-Aug-14 8:13
Cristian Amarie15-Aug-14 8:13 
General"Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
Kevin Priddle14-Aug-14 5:57
professionalKevin Priddle14-Aug-14 5:57 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
OriginalGriff14-Aug-14 6:14
mveOriginalGriff14-Aug-14 6:14 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
PIEBALDconsult14-Aug-14 6:41
mvePIEBALDconsult14-Aug-14 6:41 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
Alaric_14-Aug-14 7:02
professionalAlaric_14-Aug-14 7:02 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
PIEBALDconsult14-Aug-14 7:06
mvePIEBALDconsult14-Aug-14 7:06 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
PIEBALDconsult14-Aug-14 6:16
mvePIEBALDconsult14-Aug-14 6:16 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
Andy Brummer14-Aug-14 6:26
sitebuilderAndy Brummer14-Aug-14 6:26 
GeneralRe: "Every time a marketer is forced to wait for a developer to launch a campaign, a kitten dies" Pin
PIEBALDconsult14-Aug-14 6:31
mvePIEBALDconsult14-Aug-14 6:31 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.