 Stem BoltAka Smiling BobPremium join:2002-11-08 Cleveland, OH kudos:2 | Trojan smuggles out nicked blueprints as Windows Update data »www.theregister.co.uk/2012/02/01···ng_rats/
»blog.seculert.com/2012/01/msupda···ite.html quote: Security watchers have uncovered a new highly targeted email-borne attack that uses a supposed conference invitation as a lure - and disguises extracted data as Microsoft Update traffic.
"The method of operation of many of the attacks is similar a spearphishing email is sent with a PDF attachment of a fake industry related 'Conference Invitation'. The PDF file exploits zero-day vulnerabilities in Adobe Reader, and then installs the RAT [Remote Access Trojan] malware. The malware tries to stay under the radar of security products by pretending to be a 'Microsoft Windows Update' - hence the name 'MSUpdater' Trojan."
|
|
|
|
 CajunTekInsane CajunPremium,MVM join:2003-08-08 Arlington, TX | Hmm wasn't there another version of this thing some years ago? I don't recall if it was driven by a PDF attachment or something ellse. -- da Cajun Darn I hate Malware |
|
 dvd536as Mr. Pink as they comePremium join:2001-04-27 Phoenix, AZ kudos:4 | reply to Stem Bolt After all these years people are still falling for email attachments?  |
|
 | reply to Stem Bolt After all these years people are still using Adobe products? Seriously, it's horrendously bloated and "helpfully" opens every single PDF it sees, even if you don't want it to. If I wanted to view that PDF I'd download it and then open it thank you very much.
E-mail client with preview pane + PDF attachment + Adobe = instant pwnage, you can't even delete it without opening it first.
/M |
|
 CajunTekInsane CajunPremium,MVM join:2003-08-08 Arlington, TX | I don't use preview panes, but I have no problems deleting emails with attachments???? -- da Cajun Darn I hate Malware |
|
 antdudeA Ninja AntPremium,VIP join:2001-03-25 kudos:2 Reviews:
·RoadRunner Cable
| reply to dvd536 said by dvd536:After all these years people are still falling for email attachments?  Things won't change.  |
|