Spyware found in MB trading Sotware

Discussion in 'Forex Brokers' started by abe, Aug 16, 2006.

  1. This is not fair and maybe illegal.
    Simple-Ideas = Get your money and run like a rabbit
     
    #51     Aug 18, 2006
  2. fx shit is not regulated..meanin' u are at the mercy of your broker, who has no boundaries as where to push it and can fkuc u at will with no consequences other than for your acct.
     
    #52     Aug 18, 2006
  3. GTS

    GTS

    abe.

    I just followed a fairly methodical procedure which I had assumed would prove user error on your part (I admit this bias freely) but I must now say that I agree with your results if not your conclusion.

    I installed the latest Ad-Aware (Ad-Aware SE Build 1.06r1
    Using definitions file:SE1R119 15.08.2006) run a scan on my system that did not have MBT installed.

    Results came back clean.

    Installed the latest MB Navigator downloaded directly from MBT's web site.

    Re-ran the Ad-Aware scan and got this hit:

    I also noted that in the details it says that it is zero bytes:
    I then ran RegEdt32 and attempted to locate the registry entry in question but so far have not been able to.

    As an IT security person I know all about false positives which at first blush this appears to be; I don't see how a zero byte registry entry can hijack a browser or do anything.

    I also note that MBT uses the common WISE installer and a log is produced during the installation. I do not see any references to this registry key, however MBT's and some 3rd party dll's are allowed to self-register so it is possible that this is how the registry entry is being created.

    I am going to continue to investigate however while I agree that you did not make this up (and apologize for assuming that you had) I think it is wrong to jump to the conclusion that MBT had purposely installed malware when the more likely reason is just a false positive. So far the only proof of this malware is this suspect Ad-Aware alert.
     
    #53     Aug 18, 2006
  4.  
    #54     Aug 18, 2006
  5. GTS

    GTS

    Easy, ignite the money with a lighter.

    If it burns yellow-orange it was clean, if it burns greenish then it had a virus.
     
    #55     Aug 18, 2006
  6. Nice one,
    I am thinking.....
    Simple-Ideas = MBT-Steve can give each of us a live account with 10000$ real money and we won't report him to NFA
     
    #56     Aug 18, 2006
  7. "I think you need to get your 12 guage and go out to find those idiots. When you find'em you need to let'em have an assfull of birdshot. Believe me, those bastards will never screw with you again. Nothing quite as embarrassing as getting shot in the ass. Actually, now that I think about it, I prefer a nice head shot, but hey just take whatever shot you can get. Oh, and we never had this conversation"

    "Dick Cheney, August 12, 2004 Interoffice staff memo"
     
    #57     Aug 18, 2006
  8. GTS

    GTS

    Well here's another data point:

    On different system that has had MBT's Navigator installed and updated many times and is currently running 2 versions back (10.13.0.8 installed on 02-02-2006) the same Ad-Aware program does not report the CommonName registry issue.

    I'm going to upgrade to the latest (10.13.0.10) and see if that changes...

    (Mods, I think it sucks that this got moved to Forex Brokers - talk about hijacking, this thread has been hijacked with this Forex tangent!)
     
    #58     Aug 18, 2006
  9. GTS

    GTS

    After installing the latest (10.13.0.10) over my existing 10.13.0.8 the questionable registry entry is there (or at least Ad-Aware is detecting *something*)

    MBT-Steve, ball is in your court. Something changed between 10.13.0.8 and 10.13.0.10. PM me if you need any details.
     
    #59     Aug 18, 2006
  10. Hi Abe,

    where are you man?
    You asked for IT investigation and here it is. Now, Who will pay my damage I already suffered with MB Trading?

    Because of their illegal activities (putting Spyware into software)
    the only broker I could find in my search engine was MB Trading. This is ridiculous. Please prepare a petition to NFA and everybody in this site will sign it.

    Simple-Ideas = Claim your loss as soon as possible.

    Thanks again GTS for your smart work.
     
    #60     Aug 18, 2006