Trojan Postcard Targets Windows Users   - 2,391 Views, 2 Comments

Summary: A spam postcard posing as a friendly postcard which is really a Trojan postcard. (Shades of Sir Winston!) Security firm Sophos is warning of a "spam postcard", which appears to come from someone you know (as does so much spam ...

Previous Article « How to Go from Spamming to Prison in 6 Short Months
Read Next Article » Google Sued for Not Protecting Adsensers from Click Fraud

  Follow Anne on Twitter     Friend Anne on Facebook

A spam postcard posing as a friendly postcard which is really a Trojan postcard. (Shades of Sir Winston!) Security firm Sophos is warning of a “spam postcard”, which appears to come from someone you know (as does so much spam these days), but which is really a Trojan laden with viruses and other yucky stuff designed to steal your personal information and allow the perpetrator access to your computer.

When the unsuspecting recipient clicks on the link in the email in order to claim and view their “postcard”, instead the Clsldr-D Trojan horse is installed on their Windows computer, along with several types of malicious code designed to exploit known Windows vulnerabilities. This code includes Troj/Divo-A, Troj/Delf-KP, Troj/Lofler-A, Troj/Siggy-A, Troj/Webdrop-A, and Troj/Small-EM.

Said Sophos’ Graham Cluely, “Because this email doesn’t arrive with an attached file, some may believe it is harmless. But just visiting the web link on an unprotected computer puts it at risk of infection.”

If you receive an unexpected postcard and you really just can’t bear to delete it without checking first, don’t click on the link, but manually type in the purported address of the alleged postcard company, and see what you can see.

Trojan Postcard Targets Windows Users

 Follow Anne on Twitter

 Twitter Explained in Plain English

 Friend Anne on Facebook

Previous Article « How to Go from Spamming to Prison in 6 Short Months
Read Next Article » Google Sued for Not Protecting Adsensers from Click Fraud

Read more:

»  Beware of Anonymous Email Online Postcards

»  Unexpected Online Greeting Cards May Carry Trojan Horses

»  The “You Have Received a Postcard from a Family Member!” Spam

»  New Windows Ransom Trojan Freezes Computer, Demands Ransom as it Deletes Files

For additional similar stories check out our archives on Phishing, Spam

NOTE: We never, ever, ever will recommend any product or service on this site that we have not regularly used ourselves and do not wholeheartedly believe in. That said, in some cases after being very pleased with a product or service, we may enter into a relationship with the provider of that product or service such that if someone purchases that product or service based on our recommendation, we may get a small payment. Such payments go towards the upkeep of the Internet Patrol.

 

2 Comments »

  1. I usually get 3 or 4 “cards” a year. Those I’ve gotten in the past have been legitimate. In order to identify these “Trojan” laden links, I would like to know what sort of message do these convey? Any “clues” would be very helpful.

    Comment by Russell W. Coover — 7/2/2005 @ 12:11 pm

  2. If you receive an unexpected postcard and you really just can’t bear to delete it without checking first, don’t click on the link, but manually type in the purported address of the alleged postcard company, and see what you can see.

    How exactly does that help if the linked page on the website is using an internet explorer flaw to allow download of the trojan? Aren’t you going to get it anyway?

    It is good advice for going to your bank or Paypal website where you might be misdirected, but the way these “Postcard Spyware” things work, they are already sending you to the real website.

    If in doubt, DON’T GO TO THE WEBSITE PERIOD!!!!

    Comment by martinelli — 7/3/2005 @ 11:15 am

RSS feed for comments on this post.

Leave a comment

Warning! All comments which contain URLs and are clearly just spam to generate a link back to the URL will be deleted on sight. Don't bother wasting your time!

If you are going to include a URL in your comment,
please keep it under 25 characters in length,
or use TinyURL to shorten it before including it in your comment.

Line and paragraph breaks are automatic, your email address is never displayed.
HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

(required)

(required)


If you have not posted a comment here before, we apologize for having to ask you to enter the letters and numbers you see in the image above to validate your comment, but we are being attacked by thousands of comment form spams every day! You only need to do this once; once you have successfuly posted a comment here you will not be asked to do this again. Thank you for your understanding!

 
 This article first appeared on 6/30/2005
The Internet Patrol
Patrolling the Internet for You!