Websense Security Labs™ ThreatSeeker™ Network detected a slew of fake Virgin Blue Itinerary emails. The email contains a malicious zip attachment called Virgin-Itinerary.pdf.zip, which contains the malicious binary file Virgin-Itinerary.pdf.XXXXX.exe. When clicked, the binary copies itself as svchost.exe in the c:\Documents and Settings\All Users directory and then adds a run registry key to run the […]
Latest Comments