August 22, 2008

"Naked Angelina" is a threat !

Secure Computing Corporation SCUR), has come out with its second monthly report that outlines major spam waves in the month of July. The Secure Computing TrustedSource Research Team detected a spam-based email attack that links to new Web-based malware and features news on Angelina Jolie as bait. Both the Web and email campaigns were detected jointly by Secure Computing's Secure Web (Webwasher) and Secure Mail (IronMail) products, and successfully correlated by the company's global reputation system, TrustedSource.On average, about 2.28 percent of the total global daily email volume contains subjects like "Angelina Jolie naked," "Angelina Jolie nude movie," and "Angelina Jolie naked video." Approximately 100,000 unique IP addresses were identified as responsible for this spam on the first day of its outbreak.The "Angelina Jolie" spam campaign contains a URL linked to an executable binary, mostly seen as msvideoc.exe hosted at multiple domains. Secure Web's proactive scanning engine identified it as "Trojan.Crypt.XPACK.GEN," and both Secure Web and Secure Web Protection Service users were protected from the beginning.Another trend, the company has noticed is has been steady waves of mass-mailings hitting users' inboxes with fake invoices. For example, fake UPS messages claimed that a package couldn't be delivered and was returned, and instructed the user to print an attached invoice-which contained malware.