CNN/MSNBC Email Spam Service Alert

Posted on August 13, 2008. Filed under: Service Alert | Tags: , , , , , , , , , |

Reliant PC Consulting Service Alert

 

Date: August 13, 2008

 

Subject: EMAIL SPAM from CNN and MSNBC

 

Purpose

 

This alert has been generated due to an issue that affects my clients’ computer security. A new email spam purportedly coming from CNN and MSNBC is spam and should not be opened.

 

  1. The email looks legitimate. It contains the CNN or MSNBC logo.
  2. The email contains links that direct the user to a malware hosting site.
  3. The MSNBC spam is not being reported on but I have evidenced this spam email myself.

 

Background

 

During a service call to a client they made me aware of this spam email. Research indicated that this email was spam and in this case is particularly pernicious as it appears to come from a legitimate company. Upon opening the email the user will see a professional looking email with the CNN company logo.

 

Clicking on the “Full Story” link will direct them to a fake CNN site and be directed to download a Flash applet. This Flash applet will generate an endless loop of computer activity. Several pop ups will be generated. If they click cancel the loop will continue.

 

Clicking on any other links may take you to legitimate sites whose security has been compromised.

 

What the CNN Email Looks Like

 

The email is an html email and looks like this:

 

 

The spam has also morphed into this:

 

 

 

 

Resolution

 

  1. Keep your operating system, web browser and anti virus software up to date.
  2. Be aware of this email in general. Clients may get several “CNN” emails and the spam emails seem to be generated in response to the increased public awareness of the Olympics in the news.
  3. Delete the email immediately.
  4. If you use a spam filter program be sure it is up-to-date.
  5. If you are infected contact me ASAP and I will assist you on the removal of this software.

 

References

 

http://www.itworld.com/news/54157/fake-cnn-spam-mutates-attacks-continue

http://www.circleid.com/posts/88184_cnn_spam_outbreak/

http://securitylabs.websense.com/content/Alerts/3154.aspx

 

Conclusion

 

This Service Alert addresses a new and emerging threat. There is a good chance you may not be affected by this particular threat but an awareness of it existence will make it less likely to affect you.

 

If you have any questions or concerns please contact me.

Advertisements

Make a Comment

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

One Response to “CNN/MSNBC Email Spam Service Alert”

RSS Feed for Reliant PC Consulting Comments RSS Feed

[…] Posted on August 8, 2008. Filed under: Service Alert | Tags: alerts, bogus, Cambridge, CNN, CrossLoop, Email, email rule, Guelph, Kitchener, Outlook, spam, Waterloo, Waterloo Region | Note:  This issue is now a Service Alert […]


Where's The Comment Form?

Liked it here?
Why not try sites on the blogroll...

%d bloggers like this: