Fake Changelog Emails Contain Malware


Recommended Posts

Fake Changelog Emails Contain Malware

Claim to distribute a log file

The spam emails come with subject of "Your log 05.07.2010". However, considering that a message received today had the same subject, the 05.07.2010 date doesn't appear to change, suggesting that this campaign started sometime at the beginning of this week.

The content of the emails simply reads "Good morning, as promised your changelog is attached". The "From" field is forged and displays a name, which is also used to sign the rogue message; a bit of social engineering which makes the whole scam more believable.

The attachment is called Changelog_05_07_2010.zip and contains a piece of malware detected by Sophos as Mal/BredoZp-B. "Clearly the attachment's filename has been chosen to make the email seem more timely, and the hackers are banking on users who receive the message being inquisitive enough to open the file to see what it is regarding. Once again, that would be a bad decision - don't forget that curiousity killed the cat," Graham Cluley, senior technology consultant at Sophos, advises.

More details - http://news.softpedi...re-146810.shtml

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...