New variant W32/Trojan3.AKD attached with the DHL tracking email message


A new trojan variant is attached to the malicious DHL tracking emails. The trojan is known as W32/Trojan3.AKD and the attached zip file name is changed to dhl_n756512.zip. The content of the email remains mostly unchanged: Hello! We were not able to deliver postal package you sent on the 14th of March in time because the recipient’s address … Continue reading New variant W32/Trojan3.AKD attached with the DHL tracking email message

Email with DHL tracking number contains W32/Trojan3.AKC trojan


MX Lab intercepted a  few messages that claim that the delivery of the postal package that is handled by DHL has failed due to an incorrect recipient address. The subject contains "DHL Tracking number #05CME637072VHBD", the attachment is named DHL_HELP.zip and the body of the email contains the following message: Hello! We were not able to … Continue reading Email with DHL tracking number contains W32/Trojan3.AKC trojan

Delta Airlines ticket confirmation contains a new trojan variant


MX Lab intercepted some messages with a ticket confirmation for a flight with Delta Airlines with the attached Zip archive named Delta_eTicket.zip. The ZIP archive contains the file Delta_eTicket.exe wich is a new trojan variant under the name W32/Trojan-Gypikon-based.BA!Maximus (F-Prot), Trojan.Dropper.Delphi.Gen (McAfee GW-Edition). Message body: Thanks for the purchase! Booking number: RM2R7 You will find attached to … Continue reading Delta Airlines ticket confirmation contains a new trojan variant

Facebook message with link to striptease video leads to malware


A message from Facebook Mail with in the subject line "FaceBook message: Magnificent Striptease Dance (Last rated by Lorena Keyes)" contains an URL that leads to a host with malware. Some alternative subjects are: FaceBook message: Magnificent girl dancing video clip (Last rated by Sal Velasquez) FaceBook message: Dancing Girl Drunk In The Pub- facebook Video … Continue reading Facebook message with link to striptease video leads to malware