Malicious trojan poses as McAfee alert

By
Follow google news

Kaspersky warns of danger from Lafool.v.

Malicious trojan poses as McAfee alert
Security experts have intercepted a mass mailing purporting to come from McAfee, but which actually spreads a trojan horse.

Kaspersky Labs described the mass mailing as "unusual" because the messages attempt to spoof the email address mcafee@europe.com.

The Lafool.v infection is hidden in a Word document called 'McAfee.Inc. Reports.doc'. The file is 80,635 bytes in size, and allegedly contains a report about the propagation of malicious programs on the Internet.

However, the document actually contains a macro written in Visual Basic for Applications.

Lafool.v extracts a new modification of LdPinch, a well-known Trojan password stealing program, from itself and launches it for execution, Kaspersky Labs warned.

LdPinch steals passwords to a number of services and applications, including AOL Instant Messenger and ICQ, and other confidential user data.

Kaspersky Anti-Virus detects the new variant of this program as trojan-PSW.Win32.LdPinch.bbg.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

NAB's CSO to move to ANZ Banking Group

NAB's CSO to move to ANZ Banking Group

Researchers chain Tesla charger bug into a four-vendor EV worm

Researchers chain Tesla charger bug into a four-vendor EV worm

Two Aussies alleged to be "principal participants" of TeamPCP hacking group

Two Aussies alleged to be "principal participants" of TeamPCP hacking group

ASD warns Australian TeamCity servers under attack

ASD warns Australian TeamCity servers under attack

Log In

  |  Forgot your password?