When something sounds too good to be true I always take it with a grain salt.
I came across this tool that “can be used to make western union transfers without any credit card. You even don’t need any phone verification. Also the processes very much secured.” {sic}

Taken from: wubug.org
Supposedly, it can hack Western Union’s databases by changing the receiver’s name, create new money transfers etc.
This program sells for $250 and comes with one year free support.
The organisation that sells this tool also provides web hosting spamming services starting at $25/month
“WUBUG Developers provide web hosting for spammers. We do not care what content you upload. Warez, spam pages, credit cards hacker, upload any thing. We will never suspend your account for such abusive uses.” {sic}

Now, I can’t verify if any of this is real or not. If you do, please let me know (via Twitter as the comments on this blog is currently broken @jeromesegura) and I will update this post.
To end this story, I would like to quote the disclaimer that these guys have printed on their website:
“Please don’t use any information in this website for illegal activities. We will report the the persons involve in illegal activities.” {sic}
They obviously have a good sense of humour.
Update:
A Spanish blog picked up this story and mentioned that the file was detected by most AV vendors on VirusTotal, confirming it is not only a hoax but also malware.
- Jerome Segura
Related Posts
- Facebook’s fight back against phishing scams
Cyber criminals love social networking sites as they are full of readily available personal information. They could go about harvesting that information by hand but it’s a rather tedious proces... - Achtung! Your site is serving phishing scams
Another day, another phish. This one is a PayPal scam: The page harvests a whole bunch of information from you: And connects to a German site: www.security-patrol.de/media/files/zero.php Ironically it... - A few tips to avoid phishing scams
Phishing scams are a very real threat and yet most anti-phishing technologies are still playing catch up. As always, the human factor is the key to identify a phishing attempt and not fall for it. Hav... - PhishingEmails.com: exposing email phishing scams
I’ve been working on this project for the last few weeks regarding phishing scams. You may have noticed that I publish some on this blog every now and again, and they deserved to have a place of... - 419 scams go phishing
419 scams have become lame and not a lot of people are falling for them these days. So the scammers have to change their tactics if they want to stay in business.The scam we describe in this blog is q... - Phishing Scams Lure Twitter Users
The newest phishing scam on Twitter has snared thousands of users hoping to increase their number of followers. Instead, users are sent off to a phishing page where cybercriminals steal their Tw... - Facebook scammers go back to using Javascript
Facebook scammers know that in order to keep users falling for their scams, they have to use a variety of approaches. For example, there was a time where rogue applications were the scammers' preferre... - Malicious E-Cards on the prowl
Emails disguised as electronic cards have been used as bait over and over again for malicious intent. The fact that they are overused is a clear indicator that this lure indeed works.&n... - Cyber Crooks All Set to Crash the British Royal Wedding
As we have seen with many major events in the past, news of the British Royal Wedding is currently being used by cyber criminals to bolster their spam campaigns and push rogue antivirus software throu... - MegaVideo for MegaMoney
Any trick to get Pay Per Installs (PPI) money from Ad-supported companies is good these days.This site (www.megavideomovieshare.com/?title=) is usurping MegaVideo's identity to get peop...
Posted on 16 April 2011. Tags: Exploits, Phishing, Scams
The above information is reprinted from and copyrighted © by Malware Diaries.