New Spam Campaign Aimed at Match.com
Threat Type: Malicious Web Site / Malicious Code
Websense Security Labs™ ThreatSeeker™ Network has noticed that a new spam campaign aimed at Match.com is being used to spread a trojan called Papras over the Internet.
Match.com is an online dating service. The service reportedly has more than 15 million members and has Web sites serving 37 countries in more than 12 different languages.
On April 7 2009, we received thousands of malicious emails in our email Honey Pot system. The email claims that someone wants to show the user her pictures and videos, and lures the user into visiting the Web site set up by the attacker. When the user starts the video on the Web site, they are asked to install a streaming video player which is actually a trojan with relatively low AV detection.
Screenshot of the email:
Screenshot of the malicious Web site:
Websense® Messaging and Web Security Customers are protected against this threat.