Bogus Mcdonald’s, Coca-cola Promos Used As Worm Carriers


Recommended Posts

Dec3 2008

Bogus McDonald’s, Coca-Cola Promos Used as Worm Carriers

by Maydalene Salvador (Anti-spam Research Engineer)

Seems like McDonald’s and Coca-Cola are cybercriminals’ promoters of choice this season–two spoofed emails that claim to be from both of the highly popular brands were recently found by the Trend Micro Content Security Team.

Each messages trumpets a Christmas promotion, and instructs the recipient to open the attached coupon contained in a .ZIP file.

Trend Micro already blocks such messages, and detects both attached files through the Smart Protection Network as WORM_MYDOOM.CG. This worm gathers email addresses from the affected system’s Windows Address Book and then sends copies of itself via email, using its own SMTP engine. It also drops copies of itself in folders shared in peer-to-peer networks, as well as in all physical removable drives. Furthermore, it drops a file detected as BKDR_SDBOT.QB.

Read & see screenshots: http://blog.trendmicro.com/

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...