A Bredo Trojan is cleverly hidden in an innocent-looking archive

Oct 15, 2012 20:11 GMT  ·  By

A DHL Express Tracking Notification is making the rounds, landing in the inboxes of users in an attempt to trick them into infecting their computers with a piece of malware.

Although DHL is one of the most commonly utilized brands by cybercriminals in their malicious campaigns, fake notifications that rely on the company’s name still appear to be a success.

The latest malware attack relies on emails entitled “Processing complete successfully” which urge recipients to open an attached file in order to see additional details.

As in all similar schemes, the file (DHL_Express_Processing_ complete.pdf.zip) isn’t a detailed report, but a piece of malware identified by Sophos as Troj/BredoZp-S.

I advise you to be highly cautious when coming across such notifications. Although there’s nothing original about them, it’s clear that a number of internauts still fall for it and open the attachments, and thus turn their computers into a botnet zombie.