Gary writes in, telling us of a recent spike in SPAM with a title similar to "“State Wide H1N1 Vaccination Program", which pretends to originate from the CDC (Center for Disease Control). The email goes on to instruct you to "follow this link to create a vaccination profile on the CDC website". If you are following a link in your email - always check to see that it's taking you where you think you are going before you click it. Copy and paste it through your clipboard, or rekey the link entirely in your browser. This kind of deception is just so prevalent that clicking links in a received note is simply not safe! |
Rob VandenBrink 578 Posts ISC Handler Dec 2nd 2009 |
Thread locked Subscribe |
Dec 2nd 2009 1 decade ago |
iTinker writes with more information on the website behind this spam.
The site uses a hidden iframe on the first page, which opens another site with 2 other iframes, one with a boobytrapped PDF, and one with a javascript infector, both using the adobe exploits we referenced. This "russian doll" iframe approach is currently seeing a lot of popularity, as it has a lot of success against many of today's filters and detectors. |
Anonymous ISC Handler |
Quote |
Dec 2nd 2009 1 decade ago |
Sign Up for Free or Log In to start participating in the conversation!