Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security

April 28th, 2011, 16:55 GMT · By

Fake BoBijou Order Notifications Spread Scareware

SHARE:

Adjust text size:


Scareware distributors send fake BoBijou order confirmations
Enlarge picture
A new wave of scareware-carrying emails are posing as order confirmations from a pearl jewelry manufacturer called BoBijou in an attempt to trick recipients to open malicious attachments.

According to independent security consultant Dancho Danchev, who analyzed the new attack, the emails bear a subject of "Successfull Order [number]" and carry an attachment called Order_details.zip.

The body message is aimed to scare recipients into believing that their credit card has been wrongfully charged and as a result, open the executable file inside the zip archive. It reads:

"Thank you for ordering from Bobijou Inc.This message is to inform you that your order has been received and is currently being processed.

"Your order reference is [number]. You will need this in all correspondence. This receipt is NOT proof of purchase. We will send a printed invoice by mail to your billing address.

"You have chosen to pay by credit card. Your card will be charged for the amount of 262.00 USD and 'Bobijou Inc.' will appear next to the charge on your statement.

"You will receive a separate email confirming your order has been despatched [sic.]. Your purchase and delivery information appears below in attached file."

Opening the "Order details.exe" file contained in the attachment would be a very bad idea because it is actually a trojan downloader whose purpose is to install a poorly detected scareware program.

The fake order notification lure is an old trick used to spread malware in recent years. The fact that cyber criminals keep using it suggests that it is still successful enough to justify the effort.

Users are strongly advised to treat email attachments with caution. All files received in this manner, even if from what appear to be trusted sources, should be scanned with one or more antivirus programs before opening. Services like Virus Total are a simple solution to do that.

TELL US WHAT YOU THINK:

2,170 hits · 1 comment · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Malicious PDFs Distributed by Fake Warner Music and Cell Phone Orders

New DHL-Themed Malware Distribution Campaign in the Wild

Fake USPS Emails in Circulation

READER COMMENTS:


Comment #1 by: mssuspicious on 21 May 2011, 06:25 UTC reply to this comment

I'm not one that normally opens my email daily, but this morning I opened my email and out of curiosity open my spam mail and what did I see. The above verbatim message stating that my credit card had been charged $425.00. So, I clicke don the link to find out the details of what had supposenly been charged to mt credit card and the link wiped out all of my spam emails. This will keep me suspicous of all email.

Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM