Spam with Disguised Attachments Comes with Locky
Data de publica??o: 29 mar?o 2016

A new wave of spam that uses *.rar *.zip *.gif *.tiff *.docx *.pdf *.jpg is making its rounds.


The attachment looks like it is renamed to lure recipients into clicking the attachment files. These attachments are archive files that come with a JavaScript file that drops a LOCKY malware, detected as JS_LOCKY.BQ.
It looks like this is similar to the spam wave found several days ago that also distributes Locky ransomware. See Malspam With JavaScript Attachment Leads To Locky Ransomware.
Data/Hora do bloqueio de spam: 29 mar?o 2016 GMT-8
TMASE
- Vers?o do mecan
- Patr¨®n TMASE: 2228