Categorized | Security

Email with Guys & Dolls ZIP file contains trojan

MX Lab intercepted some emails with the subject “Ad third try” with attached a ZIP file named Guys & Dolls_displayad.zip.

The message comes from a spoofed email address and has the following body:

Sent on the Sprint® Now Network from my BlackBerry®

Hello,

I just opened a copy of the email attachment that I sent to you and
copied myself. I also sent a new email to another of my screen names
and it was there!

Here is another attached file.

The attached ZIP file contains the 168 kB large executable Guys & Dolls_displayad.exe.

The trojan is known as Win32:MalOb-CE (Avast), Trojan.Kazy.A (BitDefender), Troj/FakeAV-BSZ (Sophos), W32/Katusha.D.gen!Eldorado (F-Prot).

Virus Total permlink and MD5: 58a50da2f57aa1a842b82f4402988afa.

View full post on mxlab – all about anti virus and anti spam

Related Posts

Comments are closed.

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
5 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
5 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
5 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
5 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
5 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
5 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
5 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
5 months ago
Some free-based music we play at work http://t.co/xu5agZfc
5 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
5 months ago