Fake Trend Micro Virus Clean Tool Spreads Malware Dirt | TrendLabs | Malware Blog - by Trend Micro(情報元のブックマーク数)

TrendmicroのClean Toolをメールで送付するようなメールを発見したそうです。

Trend Micro recently discovered malware posing as the Trend Micro Virus Clean Tool being sent through email by Chinese hackers. This is a screenshot of the email message:

Fake Trend Micro Virus Clean Tool Spreads Malware Dirt - TrendLabs Security Intelligence Blog

2つのファイルをダウンロードして、実際にひとつはTrendmicroのサイトから正規のクリーンツールを落とすそうです。

でも落とすだけで、安心させてFakeなクリーンツールを実行させるとの事。

But be warned: iClean20.EXE is detected by Trend Micro as TROJ_FAKECLEAN.A. TROJ_FAKECLEAN.A drops two files, one detected as BKDR_POISON.GO and the other, the real Virus Clean Tool. Dropping the legitimate tool along with the malware must have been done to fool users that the message was indeed from Trend Micro, and that the tool was the only file downloaded into their systems.

Fake Trend Micro Virus Clean Tool Spreads Malware Dirt - TrendLabs Security Intelligence Blog

screenshot