• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Skype spammer / virus?

VirtualLarry

No Lifer
I just got a spam link from a Skype user that's a friend that hasn't been on Skype for a year.

I called him, and he said he didn't send it, and didn't even have Skype on his current PC.

I also recently added Skype to one of my PCs, the other night, on a fairly fresh PC. But I was a bit sketched out, as the Firefox Nightly security certs for my favorite sites were mostly all showing from one CA, and didn't have Owner / Identity information in the Cert. I'm on Win7 Pro, on a Lenovo (but I don't believe that these models shipped with SuperFish), using Firefox Nightly.

So, I could have been key-logged I suppose.

This laptop does have the Lo-Jack type anti-theft system in BIOS, and I tried to disable it (I am original owner), because I recently cloned the HDD to an SSD, and swapped them. That act, can piss off the embedded Lo-Jack / Computrace module, and it will go active and weaponize, and then start allowing remote accesss, keylogging, and I suppose, installation of rogue CA certs that allow MITM attacks. (Happened to one of my other laptops.)

But if "they" (whomever "they" are, that gain access via Computrace) have access, then why would they use it to send obvious spam?

I think that it's highly more likely that either my, or my friend's, Skype password info was compromised.
 
Could be, Larry. It might even be just the compromise of some business or person's address book. In the last month, I have gotten several emails from dead classmates.
 
But Skype messages are protected by public / private key crypto, as I understand it. So someone somewhere must have hacked something, or gotten someone's password.
 
I'm sure it's a virus. I had the same situation with my friend. I was not aware and opened the link, all the information on my computer was infected. I couldn't restore everything. Now I don't open any links from my friends if I'm not sure what it was he sent.
 
Back
Top