Bogus TNT emails carry a threat disguised as a PDF document

Dec 9, 2013 15:38 GMT  ·  By

If you come across an email entitled something like “TNT UK Limited Self Billing Invoice 5321378841” in your inbox, act with caution since the notification is most likely part of a cybercriminal scheme.

“Download the attachment. Invoice will be automatically shown by double click,” the messages read.

Conrad Longmore of Dynamoo’s Blog warns that the bogus TNT emails carry an attachment named TNT UK Self Billing Invoice.zip. The archive file hides an executable that’s actually a variant of the ZeuS malware.

The threat, designed to look like a harmless PDF file, is currently detected only by half a dozen antivirus engines from VirusTotal.

In case you’re a victim of this attack, regularly scan your computer with an updated antivirus application. Modern antiviruses should be capable of detecting malware based on its behavior, but in case they miss it, they will be able to remove it after a few virus definition updates.