Rodel Mendrez from M86 Security labs has made an excellent post on a Massive Rise in Malicious Spam:
http://labs.m86security.com/2011/08/massive-rise-in-malicious-spam/
As he notes in his conclusion, "It seems spammers have returned from a holiday break and are enthusiastically back to work."
So I decided to check out if I had received some spam as well. Jackpot ;-) !
UPS notification
|
|
|
|
|
|
|
|
| |
|
|
Re: End of July Statement Required
Your credit card has been blocked
ACH Transfer Review
Most of the files are displaying a Word or PDF icon to trick
Some examples of attachments, with their respective
Invoice_08.17.2011_Collcod.exe
MasterCard_invoce_ID73284783275943.doc.exe
UPS_Document.exe
form-62091.exe
When opening either of these files, you can end up with a rogue.
The dropped file that is launching the rogueware:
pusk3.exe
|
|
Conclusion
If you happen to be infected with System Repair, you can for example use the guide on Bleepingcomputer:
http://www.bleepingcomputer.com/virus-removal/remove-system-repair