'Naughty Nurse Sakura' Malware Infected Defence Industry & Govt
Everyday when we open our mails then the very common scenario we faced is numbers of junk mails containing malicious links, attachments and so on. If you think that only common internet users are only the victim of such spamming attacks then you are wrong. Victims have not been limited to common people but defence companies, along with government departments, charities and recruitment agencies. One of the latest attacks we have seen was sent to a defence contractor, using the subject line "if you want sex pictrue!". Attached to the email is a file called sexpicture.rar that contains a number of naked pictures of Japanese model Sakura Shiratori. Harmless enough you might think. However, alongside the seedy snapshots are two files. An apparent screensaver, short-SEXGPJ_1.SCR, is malicious - and detected by Sophos products as Mal/Behav-043.
Another file, short-SEX_ST_1.DOC, is detected by Sophos products as Troj/DocDrop-AF, and attempts to install further malicious code onto victims' computers by exploiting the CVE-2012-0158 vulnerability.
Make sure that the staff at your firm are wary of opening unsolicited email attachments, and that computers are defended with up-to-date anti-virus software and the latest security patches. Microsoft released its patch for the vulnerability back in April - if you haven't already rolled it out across your Windows PCs, do so now.
-Source (NS)
LINK TO OUR HOME PAGE :


Categories:
Malware
,
NEWS
,
Spam
,
vulnerablity