Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Editor Blogs > Security

May 31st, 2012, 14:38 GMT · By

BLOG

Zip File Attached to Fake FedEx Notifications Hide New Trojan Variant

SHARE:

Adjust text size:


Only a dozen antivirus products detect the attachment as being a threat Enlarge picture - Only a dozen antivirus products detect the attachment as being a threat
Emails that purport to come from FedEx are highly common and most antivirus solutions are able to easily identify the threats attached to them. However, every once in a while the cybercriminals that launch these campaigns develop a new Trojan variant that’s initially detected only by a handful of security products.

Such is the latest case presented by mxlab. The researchers have found that a parcel delivery failure notification hides a malicious element that, at press time, was identified only by 12 out of 42 vendors as posing a threat.

“We couldn’t deliver your parcel. Reason:The weight of parcel is exceed the available parameters for free delivery,” reads part of the message.

The attachment that comes with it is named something like FedEx_Label_ ID_Order_83-27- 4534US.zip, the archive file containing an executable that’s detected as Kuluoz, Bredo or Dropper, depending on the antivirus product.
FILED UNDER:
FedEx
Trojan
spam

TELL US WHAT YOU THINK:

944 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Fake “Resource Nation” Newsletter Spreads SpyEye

£800,000 Offered in London 2012 Olympics Lottery Scam

New Tumblr Phishing Scheme Uses Old Login Page

Fake Facebook “Account Cancelation Requests” Lead to Malware

“Keep Calm and Play the Tumblr Dating Game” Scam

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM