Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Recent Posts

  • Calendar

    April 2014
    S M T W T F S
    « Mar    
     12345
    6789101112
    13141516171819
    20212223242526
    27282930  
  • About Us

    Feb16
    10:04 am (UTC-7)   |    by

    New kid on the block WORM_SPOTFACE.A is inching its way into computers as it spreads via MSN Messenger and Windows Live Messenger dressed in these drabs:


    “heeey! i think i saw your picture online :O
    hahaha that’s you right? :D
    http://www.{BLOCKED}otyourface.net/main/pictures/sexy/picture2694_dl.php

    Once installed on a system, it delivers the canned IM above to 50 contacts in the infected user’s instant messaging list.


    Eventhough the mentioned URL is unavailable as of this writing, SPOTFACE’s other routine is a big enough nuisance. It deletes all the executable files found in a user’s root folder. It also has the intriguing routine of terminating NVSCV32.EXE , a process associated with the current it girl of malwareland, FUJACKS. Is the time of worm wars really long past or do we smell one coming?





    Share this article
    Get the latest on malware protection from TrendLabs
    Email this story to a friend   Technorati   NewsVine   MySpace   Google   Live   del.icio.us   StumbleUpon




    Comments are closed.



     

    © Copyright 2013 Trend Micro Inc. All rights reserved. Legal Notice