Malware Disguised as IE7 Update

August 6th, 2008 by Rebecca Herson | Category: Email Security, Web Security | 1 Comment »

How ironic - malware distributors are using the vulnerabilities inherent in IE (and other browsers) to distribute malware purporting to be an Internet Explorer update!

The spammers did a few things to make the message appear to be legitimately from Microsoft, spoofing a Microsoft from address, and copy-pasting the MSN text into the bottom. Of course, [...]

Angelina Jolie Malware “Video”

July 15th, 2008 by Rebecca Herson | Category: Email Security | Leave a comment »

I know some people get excited about the prospect of a new video of Angelina Jolie (with or without her new twins), but it’s not recommended to download one that ends in “.exe” since it’s most likely malware
Building on the trend from the past few months of using standard MSN messages (links and [...]

More Pharma Spam with Microsoft Content

May 6th, 2008 by Rebecca Herson | Category: Spam Favorites | 1 Comment »

You may recall that we wrote about spammers who used Microsoft hotmail content within the source of their messages, hidden from the reader (except for those techies who right-click & hit “view source”). Well, I spammers must have liked the results and wanted to take it a step further. The latest trick is to put [...]

Fraudsters Already Working on Microsoft/Yahoo Acquisition

February 10th, 2008 by Rebecca Herson | Category: Miscellaneous | Leave a comment »

Here’s a cute one our Detection Center just sent over - a traditional 419 scam in the guise of a lottery prize, sent from a scammer pretending to be… none other than Yahoo/MSN. Haven’t they heard that the deal isn’t finalized yet?!

Hotmail Welcome Letter Camouflages Pharma Spam

The Commtouch Detection Center identified a massive outbreak of pharmaceutical image spam that started last week, with a neat new trick: the spammers camouflaged
their messages as Hotmail welcome messages. They literally took the text and layout of the Hotmail messages and hid it within the body of the html source. They did another cute trick [...]