Better Business Bureau Phish with Trojan Downloader
March 23rd, 2008 by Fatima Bancod (Email Security Analyst)
The Better Business Bureau (BBB) is the target of a new phishing scam, in which a user is asked to download a rogue ActiveX installer upon visiting the Web site www.national-bbb.com/complaints/ViewReport.php?case=509134429&;biz=&bbb=1186. The said installer is actually a Trojan downloader file named Acrobat.exe.


The domain www.national-bbb.com/* is already blocked by the Content Security Team.
The BBB has a history of being a target of malware authors and spammers, besides phishers. Previously, it has been used as a subject of spam that contained malware detected as TROJ_ARTIEF.A.

