NEWS FROM THE LAB - Wednesday, April 6, 2011

Social Engineering Fail? Posted by Response @ 05:59 GMT

We've been seeing a run of malware distributed via spammed e-mails in the last couple days.

The e-mail messages and the malware aren't particularly new. The message is fake and pretends to be related to a delivery service; attached to it is a disguised ZIP file containing a trojan-downloader.

If the ZIP file is run, what a user would see is:

DHL Express Services

"Hmm, I have an incoming parcel from DHL. I'd better check the attached document for the tracking number. Uh wait… or was it from FedEx?"

User confused, as well as infected.

Threat Solutions post by — Broderick