02 Oct 2001
Only a week after hackers managed to smuggle malicious code onto a Security Focus mailing list, the website has been forced to warn users about another piece of 'malware' masquerading as a virus fix.
This time a rogue email is in circulation purporting to be from Security Focus' analyst team and antivirus company Trend Micro. It has an attachment called 'FIX_NIMDA.exe', which claims to be a patch for the Nimda worm but, in reality, the email is being used to deliver "what appears to be a Trojan horse to unsuspecting users", said the Security Focus team.
Further reading
In an effort to make the trick more convincing, the rogue file has been named after a genuine fix which is distributed by Trend Micro.
But the cyber vandals don't appear to have gone to the trouble of trying to forge or disguise the mail headers in the email, making it obvious to the curious reader that the email is fake.
"Do not run this attachment. These messages do not come from Trend Micro or Security Focus, as a quick check of the headers will reveal," read the warning from Security Focus.
The company said that it has a policy of never sending executable attachments claiming to be a fix to any worm or vulnerability, in a bid to avoid such situations.
"Common sense and best practices indicate that you should not execute any code that is delivered via email unless you can authenticate the source of the message," said the security site.
The full warning can be read here.
Latest stories from Security
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
Orange and Intel talk us through the ins and outs of their San Diego smartphone
Connect with V3.co.uk
Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them
The importance of understanding your infrastructure
Development Manager / PHP Developer / MySQL / LAMP...
Process Expert for Information/Content Management...
SQL Server / SSIS / ETL / T-SQL Data Migration A...
Linux Systems Administrator / Linux CentOS / Network...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?