On TechRepublic: Beware of crazy recruiter tricks
BNET Business Network:
BNET
TechRepublic
ZDNet

December 12th, 2008

US-CERT: Beware of airline ticket e-mail scam

Posted by Ryan Naraine @ 10:45 am

Categories: Anti Virus, Arbitrary Code Execution, Browsers, Data theft, Malware, Phishing, Spam and Phishing, Spyware and Adware, Viruses and Worms

Tags: Malware, Social Engineering, US-CERT, E-mail, Viruses And Worms, Online Communications, Security, Ryan Naraine

US-CERT warns of airline ticket e-mail scamThe United States Computer Emergency Readiness Team (US-CERT) has issued an alert for an e-mail scam targeting holiday travelers, warning that malware authors are using clever social engineering tactics to hijack Windows computers.

In the e-mail scam, users get a .zip file attached to a message about an airline ticket and an ominous mention of a credit card balance.  It appears to come from legitimate major airlines including Delta, JetBlue, Continental, American Airlines and Virgin America.

This .zip attachment appears to contain a purchase invoice and flight ticket. If a user opens this attachment, malicious code may be installed on the system.

The malware associated with this spam run is a Trojan downloader that’s typically used to drop other malicious programs on an infected machine.  It was previously used in e-mail scams related to fake UPS invoices.

The use of social engineering lures alongside news events and holidays is tried-and-true so it’s no surprise to see this type of scam circulating at holiday time.  However, the use of a fake “credit card balance” is somewhat unique, meant to scare unwary users into opening the rigged attachment.

US-CERT encourages users to do the following to help mitigate the risks:

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 20 Talkback(s)
YOU'RE the one assuming
That *nix OSs have vulnerabilities just like Windows
ones do.

That, coupled with refusing to back up your claim in
any way, is a very common Windows Fanboy stereotype.

If you don't want to come off as a deluded fanboy,
simply don't act like one.... (Read the rest)
Posted by: AzuMao Posted on: 12/17/08 You are currently: a Guest | | Terms of Use
What Kind Of Computers Are Targeted? What Kind?  itanalyst2@... | 12/14/08
Ditto  ColdFusion_z | 12/15/08
One day...  jetkins | 12/15/08
SURE There Is - B/c You M$FT Bigots Just Don't Get It!  drprod@... | 12/15/08
Wrong ASSumption  jetkins | 12/16/08
YOU'RE the one assuming  AzuMao | 12/17/08
Just keep telling yourself that  AzuMao | 12/15/08
RE: US-CERT: Beware of airline ticket e-mail scam  bighugedave | 12/15/08
Its very easy,  rarsa | 12/15/08
You are 100% correct.  ergodic | 12/15/08
Go away, troll.  AzuMao | 12/15/08
Use of Sandboxie to help fight this type of scam  mfanjoy | 12/15/08
Sandboxie...  fairportfan | 12/15/08
Don't use IE  sxfield@... | 12/15/08
Sandboxie WORKS with 32 bit Vista  duhovnik | 12/16/08
sandboxie?  Jim4Prez | 12/15/08
RE: US-CERT: Beware of airline ticket e-mail scam  half@... | 12/15/08
mileage varies????  vilppuu@... | 12/16/08
What forum was that?  AzuMao | 12/16/08
RE: US-CERT: Beware of airline ticket e-mail scam  Non Compos Mentis | 12/16/08

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

  • Thought-provoking progressive ideas on diverse topics that intersect with technology, business, and life, and matter to the world at large. Visit SmartPlanet
  • More from IBM
  • Innovate your business' process model, play against the market, compete against others on our scoreboards and WIN! Try INNOV8 2.0: A BPM Simulator
  • Enabling Real-World Business Transformation through IBM Service Management Read the EMA Analyst Report
Click Here