Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Editor Blogs > Security

August 8th, 2012, 13:08 GMT · By

BLOG

Windows Common Controls Flaw Exploited in Attack on Defense Contractor

SHARE:

Adjust text size:


Emails carrying pictures of a Japanese model hide pieces of malware Enlarge picture - Emails carrying pictures of a Japanese model hide pieces of malware
The staff members of an unnamed defense contractor have been receiving spam emails which attempt to trick them into opening an attachment that allegedly holds adult pictures of a Japanese model, Sophos experts report.

Entitled “If you want [adult] picture,” the messages come with a .rar file that stores a number of adult photographs of the young lady, a document, and a screensaver.

While there’s nothing malicious about the pictures, the .scr file is actually a piece of malware identified as Mal/Behav-043.

The .doc file hides a Trojan known as Troj/DocDrop-AF which leverages a vulnerability in Windows Common Controls to push additional malicious elements onto the target device.

This particular security hole - CVE-2012-0158 – was patched by Microsoft back in April. However, many users fail to apply software updates on time, in some situations leaving their digital assets exposed for years on end.
FILED UNDER:
malware
spam
vulnerability

TELL US WHAT YOU THINK:

1,164 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Subscription Scam: “You've Won: Amazon $500 Gift Card with Kindle Fire”

Bredo Trojan Hides in Fake Groupon Emails

Bigpond Phishing Scam: Reply to This Email with Your Username and Password

Scam Alert: John Cena Dies of Head Injury, Video Link Included

Fraudsters Use Spam Messages to Recruit Money Mules

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM