ADP - Reference #109-349-624462 - Gameover Zeus Malware

This phishing has an attachment with a zip file. Payload - Gameover Zeus - banking trojan.

From: <Scan0@qsisales.com>
Date: Thu, Sep 19, 2013 at 2:58 PM
Subject: ADP - Reference #109-349-624462
To:
We were unable to process your recent transaction. Please verify your details and try again.
If the problem persists, contact us to complete your order.
Transaction details are shown in the attached file.
Reference #109-349-624462
This e-mail has been sent from an automated system. 
PLEASE DO NOT REPLY.
The information contained in this message may be privileged, confidential and protected from disclosure. If the reader of this message is not the intended recipient, or an employee or agent responsible for delivering this message to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please notify your representative immediately and delete this message from your computer. Thank you.
Incoming_ADP_0919 Incoming_ADP_0919
278K   View   Download  





P2P Zeus



File Name: ADP_Reference_09172013.exe
MD5: 47db7adff2526b3494e61300b5ad504b

Traffic Pcap
http://anubis.iseclab.org/?action=result&task_id=15d988d087b4cc464657b3756558b4681&download=traffic.pcap

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.