Jump to content

Malwarebytes

Bredolab.X


1 reply to this topic

#1
squiretoad

    New Member

  • Members
  • Pip
  • 1 posts
Got three of these in identical email messages, purporting to be from DHL (a "missed delivery, here's the shipping label").

The .zip attachment is:

DHL_Delivery_Label_6f37f36.zip

The infected executable inside (infected with Bredlab.X) is:

DHL_Delivery_Label_6f37f36.exe

The new Microsoft Security Essentials antivirus program caught this. Malwarebytes (latest and greatest) did not.

The email return address was forged to look like DHL; but the interior address reflect other sources. Yes, I've fired rockets off to all the postmasters (for what that's worth)

My first message here, hope I'm doing it right.

Squire Toad

Attached Files



#2
Fatdcuk

    Malware BBQ'er

  • Moderators
  • PipPipPipPipPipPip
  • 16,126 posts
  • Gender:Male
  • Location:127.0.0.1
Many thanks squiretoad,

I will take a look at the file shortly ;)
Ade Gill
Research Engineer

Posted Image

Follow us: Twitter, Become a fan: Facebook





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us