Jump to content


Dangerous Trojan masquerades as a political video:


5 replies to this topic

#1 OFFLINE   DennisD

    Just another volunteer

  • Moderators
  • 7,930 posts
  • Gender:Male
  • Location:England: NE Coast

Posted 10 February 2007 - 01:05 AM

Found this from an earlier link provided by Andavari re. Dr. Webs Antivirus plug-in for Firefox.

The main article, dated Jan 21st, can be found here:

Quote

The messages with Trojan.Spambot in attachments may have the following subjects:

* Russian missle shot down Chinese satellite
* Russian missle shot down USA satellite
* The Supreme Court has been attacked by terrorists. Sen. Mark Dayton dead!
* Fidel Castro dead!

The names of executable files are the following:

* Full video.exe
* Full clip.exe
* Full news.exe
* Full story.exe
* Video.exe

Experts of Doctor Web, Ltd. warn users to never open any attachments received from unknown users. We predict increase of similar spam distributions of this Trojan. The subjects and the executables attached to the messages may differ.

Regards

#2 OFFLINE   Spysnake

    Advanced Member

  • Members
  • PipPipPip
  • 97 posts
  • Gender:Male
  • Location:Finland
  • Interests:Airsoft, Parkour, Pekiti-Tirsia Kali and computers in general.

Posted 10 February 2007 - 05:21 PM

Opening .exe files in email even from your best friend isn't recommended. Why this so simple fact is often completely ignored? Really, something like Full Video.exe should ring bells at some point.

#3 OFFLINE   XanaTos112

    Advanced Member

  • Members
  • PipPipPip
  • 211 posts
  • Location:Dublin

Posted 10 February 2007 - 06:25 PM

lol yeah,some common sense and you shouldnt fall for things like this
Who watches The Watchmen?

#4 OFFLINE   Andavari

    Captain Spectacular

  • Moderators
  • 13,327 posts
  • Gender:Male
  • Location:Shadow Moses

Posted 10 February 2007 - 11:18 PM

In this day and age it's pretty much common knowledge for people not to run executable files from emails, however I suppose some people can't resist out of pure curiosity and thus get infected, and possibly end up reinstalling Windows.
Complexity of incoherent design.

#5 OFFLINE   rridgely

    I hate computers

  • Moderators
  • 8,858 posts
  • Gender:Male

Posted 10 February 2007 - 11:46 PM

You have to think though that a lot of people(average users) don't know the difference between .exe and .avi. Plus it doesn't help that windows hides file extensions by default either so unless you know the differences from the icons(which usually can distinguish the file types, but not always) you may not even know what the file type is).

#6 OFFLINE   AndyManchesta

    Power Member

  • Spyware Moderators
  • 1,821 posts
  • Gender:Male
  • Location:Manchester. UK
  • Interests:Music, Movies, Website Building & Design, Malware Testing/Research and spending time with friends & family.

Posted 11 February 2007 - 12:41 AM

Trend Micro has an excellent write on this Trojan here:

http://www.trendmicro.com/vinfo/secadvisor...+Focused+Attack