Subscribe to RSS feeds


Jun20
by Dianne Lagrimas (Technical Communications)

Before one could get hired, spammers made sure you remember your school days. And they do this by way of celebrating Classmates’ Day, as seen on the spreading message below:

{Classmates

Clicking on the continue link takes you to the following legitimate-looking Classmates.com Web page:

{Classmates.com

After which, a download dialog box appears, prompting you to download a file to be able to see the video:

{Classmates.com

In true spammer-malware author fashion, the downloaded file is an executable, which Trend Micro detects as a TSPY_PAPRAS variant.

This post will be updated as more information on the analysis of the downloaded file comes in.




Comments are closed.



© Copyright 2008 Trend Micro IncAll rights reserved. Legal Notice