We have seen virus spread through a number of means, emails, infected programs, via backdoors. But toady I was surprised to see a "new" tactic. I got a mail, disguised to be coming from Kaspersky labs, with the title "Virus Removal Tools". It said "Kaspersky Labs has developed free virus removal tools. If your computer has been infected by any of the viruses listed below, you can download a free removal utility here".
The email consisted of download instructions for a so called virus removal utility "fix_virus.exe" or "fix_virus.zip", with direct download links, complete with ten mirrors ! (Netherlands, Germany, Russia, USA). The email claimed that the virus removal utility could destroys W32.Kelvir ,W32.Mytob.AR@mm , W32.Mytob@mm , W32.Sasser , W32.Mydoom@mm , W32.Reatle@mm , Trojan.Jasbom , W32.Beagle@mm , W32.Kelvir and W32.Bropi.
I am not sure whether it is a virus, a backdoor or even spyware. But the email is for sure, fascinating and amusin. Its fun to see the bad guys changing tracks and trying new and better methods
Not to forget the hundreds and hudreds phishing emails i recieve every day.
Here's a screenshot

The email consisted of download instructions for a so called virus removal utility "fix_virus.exe" or "fix_virus.zip", with direct download links, complete with ten mirrors ! (Netherlands, Germany, Russia, USA). The email claimed that the virus removal utility could destroys W32.Kelvir ,W32.Mytob.AR@mm , W32.Mytob@mm , W32.Sasser , W32.Mydoom@mm , W32.Reatle@mm , Trojan.Jasbom , W32.Beagle@mm , W32.Kelvir and W32.Bropi.
I am not sure whether it is a virus, a backdoor or even spyware. But the email is for sure, fascinating and amusin. Its fun to see the bad guys changing tracks and trying new and better methods
Here's a screenshot

on June 29, 2008, 3:33 pm
( Reply to this comment )