Calendar Of Updates: Malware SPAM: CNN Alerts: My Custom Alert is link to adobe_flash.exe - Calendar Of Updates

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Malware SPAM: CNN Alerts: My Custom Alert is link to adobe_flash.exe

#1 User is offline   Donna 

  • Guinea Pig???
  • PipPipPipPipPipPipPipPipPip
  • View blog
  • Group: Admin - Site
  • Posts: 17,260
  • Joined: 11-October 03


Users Awards

Posted 08 August 2008 - 08:00 AM

What we have today in the malware SPAM watch is another fake email entitled "CNN Alerts: My Custom Alert"

The preview of the emails:

Quote

Alert Name: My Custom Alert

Funniest commercials ever
Fri, 8 Aug 2008 12:51:23 +05-30

FULL STORY

________________________________________
You have agreed to receive this email from CNN.com as a result of your CNN.com preference settings.
To manage your settings click here.
To alter your alert criteria or frequency or to unsubscribe from receiving custom email alerts, click here.
________________________________________
Cable News Network. One CNN Center, Atlanta, Georgia 30303
© 2008 Cable News Network.
A Time Warner Company
All Rights Reserved.
View our privacy policy and terms.

The link is not visible as usual unless you will hover your mouse or copy the hyperlink:
Attached Image: cnnalertspreview.png

Attached Image: cnnalertspreviewemail.png

Attached Image: monthly_08_2008/post-1-1218182146.png

http://alkion.com.ua/cnnplus.html
http://www.worknet.ru/cnnplus.html
http://www.jazzfoto.ru/cnnplus.html


When a user mistakenly click the link to read a full story or CNN article:

Attached Image: cnnalertspreviewsite.png

It will offer adobe_flash.exe

Attached Image: cnnalertspreviewdownload.png

17 out of 36 malware scanners will detect the file as malicious:

Attached Image: cnnalertsspamvt.png

http://www.virustotal.com/analisis/4e5d2e9...deb94af741a23ee

Don't click to avoid infection!

#2 User is offline   lithium 

  • Dies Solis
  • Pip
  • View blog
  • Group: Member - Security Expert
  • Posts: 1
  • Joined: 08-August 08

Posted 08 August 2008 - 09:10 AM

It's important to note that we have found these malicious links on blogspot pages. More information can be found here --> http://malwaredatabase.net/blog/index.php/...stom-alert-new/

View PostDonna, on Aug 8 2008, 09:00 AM, said:

What we have today in the malware SPAM watch is another fake email entitled "CNN Alerts: My Custom Alert"
{snip}


#3 User is offline   Donna 

  • Guinea Pig???
  • PipPipPipPipPipPipPipPipPip
  • View blog
  • Group: Admin - Site
  • Posts: 17,260
  • Joined: 11-October 03


Users Awards

Posted 08 August 2008 - 12:32 PM

Thanks for joining us here in CoU lithium!
The SPAM with CNN Alerts: My Alerts are in the wild now. Hotmail, Yahoo and Gmail accounts here got it also and there's 5 to 10 in some accounts.

#4 User is offline   Larry38 

  • Dies Martis
  • PipPipPipPip
  • View blog
  • Group: Member - Contributor
  • Posts: 472
  • Joined: 15-August 05

Posted 08 August 2008 - 04:16 PM

Thanks Donna.

Got one this morning on my OE mail and promptly deleted it. Don't know how it got past my ISP's security, very few ever make it to my OE, they get put in a Postini box.

#5 User is offline   Donna 

  • Guinea Pig???
  • PipPipPipPipPipPipPipPipPip
  • View blog
  • Group: Admin - Site
  • Posts: 17,260
  • Joined: 11-October 03


Users Awards

Posted 12 August 2008 - 01:53 PM

Just an update guys. This CNN Alerts: My Custom Alert is still pouring in mailboxes and it is now showing this link:

http://www.dbmonline.com/cnnlast.html


cnnlast.html --> hopefully that their last campaign!

Attached Image: cnn.jpg

#6 User is offline   Donna 

  • Guinea Pig???
  • PipPipPipPipPipPipPipPipPip
  • View blog
  • Group: Admin - Site
  • Posts: 17,260
  • Joined: 11-October 03


Users Awards

Posted 12 August 2008 - 01:54 PM

Off-topic: There's a thread for you Larry at Corkboard forum.

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic