About RSS
Search for: in 

Windows Watch - an XP & Vista blog

Computer virus
Worm variant installs a backdoor to allow remote control of the PC
R E L A T E D   C O N T E N T

Free email newsletters




Jargon Buster

ADVERTISEMENT

Bogus F-Secure emails hide nasty worm

Spoofed messages contain Breplibot.AE payload

Iain Thomson, vnunet.com 02 Feb 2006
ADVERTISEMENT

Antivirus firm F-Secure has issued a warning about a rash of spoof emails purporting to come from its researchers.

The emails, apparently from a 'David Adams' at F-Secure, tell the recipient that they are having problems with their browser, and include a screenshot in a .zip file.

But the file contains a new worm variant called Breplibot.AE which installs a backdoor to allow remote control of the PC. It also attempts to shut down any security software running on the machine.

The email reads: 'I noticed whilst browsing your site that there were problems with some of your links, when I tried again with Internet Explorer the problems were not there so I assume that they were caused by me using the Mozilla browser.

'As more people are turning to alternative browsers now it may be of help for you to know this. I have enclosed a screen capture of the problem so your team can get it fixed if you deem it an issue.'

F-Secure has confirmed that it has no employee by the name 'David Adams' and does not distribute emails with attachments to its customers in this way.

"There is a mass spamming underway right now. Some emails were also spoofed from editor@f-secure.com or from info@f-secure.com," said Mikko Hyppönen, chief research officer at F-Secure on the company's blog

"The emails are not sent from our network. They are just spoofed to look like they are coming from an F-Secure address."

See also:

Trojan horseSpam email lures users to spoofed antivirus download page  14 Dec 2005
GoogleSpoofed webpage is identical, but displays alternative ads  19 Sep 2005
Scam emails tell recipients their surfing has been monitoredOpening attachment is a 'dangerous' business, says law enforcement agency  24 Feb 2005

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
London, United Kingdom | MI5
Programme Managers - Project Managers - Project Support Staff   Getting the best out of technology is critical to helping us protect the UK. Join MI5 and use your skills and experience to help us ... more >
London, United Kingdom | MI5
Business Intelligence Specialists - Competitive Salary + Excellent Benefits - London   Getting the best out of technology is critical to helping us protect the UK. Join MI5 and use your skills and experience to ... more >
Reading, Berkshire, United Kingdom | EDS
Job Title Netcool Designer / Engineer Location Reading Short Description: DII The DII project is contracted to supply both hardware and software infrastructure solutions to support the MoD transition to a common base solution, based ... more >
London, United Kingdom | British Museum
Senior Programmer - The British Museum - £40k+ - London   Although steeped in history, the British Museum is constantly striving to improve access to and understanding of one of the world's most diverse collections of antiquities from cultures ... more >
More job opportunities
Join our fight for a fair deal when shopping online
ADVERTISEMENT