Corporate mail spam drops Haxdoor

A vaguely official sounding email is being widely spammed, claiming to relate to some nebulous business activity between the sender and recipient, but actually forming another vector for spreading malware. The text reads like a variant of the classic 419 scam, but veers off into a lure to open the infected attachment.

...Attached to the mail, generally in a file called 'au.exe', is a variant of the 'Haxdoor' backdoor trojan, already detected either explicitly or generically by most AV products. Virus Bulletin : News - Corporate mail spam drops Haxdoor

Linked by shanmuga Friday, 1st September 2006 10:35PM