May 26, 2007Malware Authors Will Try Anything
I received a typical malware-laden email tonight that packed a double whammy. The attachment was a file named Document.zip. The Subject line was "Your help is necessary. If yo". The message body was the following:
Your help is necessary. If yuo will not help - I a corpse! Oepn a page tehre all it is written
That translates to the following English:
Your help is necessary. If you will not help - I am a corpse! Open a page there. Everything is written there.
I ran the attached file through VirusTotal, which passes the file's signature through about 30 different malware databases. Most of the major antivirus vendors identified the file as a Trojan loader, which installs itself as a rootkit—particularly difficult to remove.
And so, yet another chapter (among thousands) in the story of malware propagators vs. computer users. The social engineering of this particular message is nasty (nastier still, if it had been written in better English). And, just in case you don't open the attachment, a URL can take you to a site ready to do a drive-by malware installation for you.Posted on May 26, 2007 at 11:34 PM