- This topic has 2 replies, 2 voices, and was last updated 21 years, 5 months ago by .
Viewing 3 posts - 1 through 3 (of 3 total)
Viewing 3 posts - 1 through 3 (of 3 total)
- You must be logged in to reply to this topic.
Home › Forums › Archives › Instant Messaging › AIM Support › New AIM Hijacker
— NEW AIM HIJACKER —
My apologies if any of you have already encountered and/or posted about this one, but I’ve recently come across another AIM hijacker, this time one that hijacks a user’s away message by inserting a hyperlink that leads to a blank HTML document with a file download that installs the same software on their PC. The user’s away message will typically read “WTF?! http://www.transusacorp.com/bestfriends.scr”. If you download the application that the website prompts you to download, its properties label it as a 32KB screensaver. This, of course, is not true. Below, I’ve included the WHOIS lookup from the website in question.
Domain Name: TRANSUSACORP.COM
Administrative Contact :
Hooper, Jay Ho
(36064480P)
jayho@arcic.com
911 S. Bixby Drive
City of Industry, CA 91745
US
Phone: 626-445-2560
this is old. but thanks for the extra info.
Yeah I figured that it may have been around for a while since I’d never heard a whole lot about it, but a couple of my friends told me that they’d been infected so I figured I’d post what I could up here. Sorry for the false alarm!
Jay