funsec mailing list archives
Re: {Spam?} nasty infection from following link if anyone is interested
From: Alex Lanstein <ALanstein () FireEye com>
Date: Wed, 25 Nov 2009 12:19:26 -0800
That was yesterdays (or the day befores?) zeus/zbot campaign, fwiw
Alex
________________________________________
From: funsec-bounces () linuxbox org [funsec-bounces () linuxbox org] On Behalf Of RandallM [randallm () fidmail com]
Sent: Wednesday, November 25, 2009 1:54 PM
To: full-disclosure () lists grok org uk
Cc: funsec
Subject: {Spam?} [funsec] nasty infection from following link if anyone is interested
one of my sales people fell for a "someone posted a picture of you" emails.
Got a real nasty that came with, according to malwarebytes, "Pawnd.bot
and Backdoor.bot".
Havent checked it out yet but thought I would share it.
The link is this:
(REMOVETHISFIRSThttp://archive1329101302.heddasq.eu/photo-hosting/)
--
been great, thanks
a.k.a System
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.
--
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.
Current thread:
- nasty infection from following link if anyone is interested RandallM (Nov 25)
- Re: {Spam?} nasty infection from following link if anyone is interested Alex Lanstein (Nov 25)
- Re: {Spam?} nasty infection from following link if anyone is interested RandallM (Nov 25)
- <Possible follow-ups>
- Re: nasty infection from following link if anyone is interested Juha-Matti Laurio (Nov 25)
- Re: [Full-disclosure] nasty infection from following link if anyone is interested Dragos Ruiu (Nov 25)
- Re: {Spam?} nasty infection from following link if anyone is interested Alex Lanstein (Nov 25)
