Kingpin Tech Technology ideas from the front lines

1Dec/090

You’ve got money! …. or a virus

Posted by: David

About like this

About like this

Be on the lookout for e-mails with the subject "You've got money!".

The e-mails will have no body text, and will have a .zip attachment that contains a malicious .exe file.

Once again, NEVER RUN AN .EXE FILE AS AN E-MAIL ATTACHMENT.  This is one way you can get viruses.

The .exe file in question is called Transaction.exe and has a size of 135,168 bytes.

24Nov/090

Two recent security threats – 11-24-09

Posted by: David

Chinese video leads to virus?

Chinese video leads to virus?

What is the security risk?


1. According to Cisco SIO, the first of the risks is one that is included in  a Portugese language spam e-mail that claims to have a link to a greeting card for the recipient of the e-mail.  The e-mail will ask that you click on a link to see the card, but instead the link goes to a malicious executable file.  The file that is related with this will be probably called VoxCard21-11-2009.exe, so be careful.


The subject will not make any sense if you only speak and read English, but at the end you will notice VOXCARDS!  The important part to remember about this risk is to avoid anything with VaxCards, or any file with .exe on the end of it from someone that you don't know or trust - including companies that you don't know or trust.


2. The second risk is according to Cisco SIO, is related to a Chinese language e-mail that links to a video.  I would assume most English reading people would assume it is spam, but you cannot be too careful.  If you see an e-mail like this and you are wondering if it is really a video or a virus they are trying to install on your computer you should make sure the link DOES NOT point to something called mx-player.exe.  This executable file is what people are downloading and running when they click on the link.  In case you are wondering if it prompts you to download it, it is about 500Kb.


Don't ever open a .exe file from an e-mail unless you know 100% what that file is and what it does.