Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Recent Posts

  • Calendar

    October 2014
    S M T W T F S
    « Sep    
     1234
    567891011
    12131415161718
    19202122232425
    262728293031  
  • About Us

    Feb16
    10:04 am (UTC-7)   |    by

    New kid on the block WORM_SPOTFACE.A is inching its way into computers as it spreads via MSN Messenger and Windows Live Messenger dressed in these drabs:


    “heeey! i think i saw your picture online :O
    hahaha that’s you right? :D
    http://www.{BLOCKED}otyourface.net/main/pictures/sexy/picture2694_dl.php

    Once installed on a system, it delivers the canned IM above to 50 contacts in the infected user’s instant messaging list.


    Eventhough the mentioned URL is unavailable as of this writing, SPOTFACE’s other routine is a big enough nuisance. It deletes all the executable files found in a user’s root folder. It also has the intriguing routine of terminating NVSCV32.EXE , a process associated with the current it girl of malwareland, FUJACKS. Is the time of worm wars really long past or do we smell one coming?





    Share this article
    Get the latest on malware protection from TrendLabs
    Email this story to a friend   Technorati   NewsVine   MySpace   Google   Live   del.icio.us   StumbleUpon




    Comments are closed.



     

    © Copyright 2013 Trend Micro Inc. All rights reserved. Legal Notice