Trojan attack with e-ticket attachment
Monday, January 26, 2009
A new spam email has an attachment that appears to be a new Trojan attack that uses a fake e-ticket receipt to infiltrate users' machines.
The email appears to come from either Northwest Airlines or United Airlines, and attempts to fool users into thinking plane tickets have been purchased with their credit card, Darkreading.com reports.
Attached to the email are Your_ETicket.zip or eTicket.zip, which is downloaded trigger Troj/Agent-IPS, a data-stealing Trojan horse, according to the article. It's the hope of hackers people may be so concerned about their credit card being charged, they won't think about opening an attachment from an email.
A similar spam email was detected last month by security officials and a broader scam was found in the middle of 2008.
Some security experts predicted financial-focused phishing attacks would increase as the economy worsened, with cybercriminals taking advantage of people's interest in saving money or with people's concern about their personal credit.
Websense released its bi-annual research report State of Internet Security last week and stated in the past six months, approximately 84 percent of emails were spam. The majority of them contained malicious links or attachments.
Related News:
Password security a tall order for many web users - 1.22.2010 A recently released study from tech researcher Imperva showed that the most popular password among users whose accounts were compromised in the recent RockYou data breach was as follows: 123456.
Facebook fixes "wrong friends list" mobile network security glitch - 1.22.2010 CNET reports that social media network Facebook has repaired a problem in the mobile version of its service that caused some mobile users to have full access to the friends lists of unassociated users.
Automated phishing scam hits bank customers - 1.14.2010 Phishing attacks do not target victims exclusively via email, experts say, pointing to a recent rash of automated phone calls that attempted to convince victims to give up sensitive banking information.
Scammers ride aftershocks of Haiti catastrophe - 1.14.2010 The Federal Bureau of Investigation has issued a warning to those who want to contribute to earthquake relief efforts in Haiti, saying that cyber criminals and other types of scam artists are trying to take advantage of an outpouring of humanitarian support.
Banking Trojans finding new vector with fake Outlook alerts - 1.11.2010 A spurious alert purporting to come from Microsoft Outlook has cropped up in recent weeks, according to a maker of email filtering software.
|