BBB assistance malware attack strikes again

Filed Under: Featured, Malware, Spam

BBB malware attack spammed outOnce again, cybercriminals have spammed out emails claiming to come from the Better Business Bureau (BBB), with the intention of infecting Windows computers with malware.

SophosLabs has intercepted a widespread malware attack that is being spammed out as an attachment to an email claiming to come from the BBB.

The emails vary in their wording, but all claim that a consumer has complained about the company receiving the email. The details of the complaint, naturally, are contained inside the attached "BBB Report.zip" file (which, of course, contains malware).

It should go without saying that the emails do not really come from the Better Business Bureau. The criminals behind the campaign are simply adopting the disguise of the BBB in the hope that you will take the message seriously and open the attached file.

Here's just a small selection of the emails SophosLabs experts have blocked, which demonstrate how the wording can morph:

Animation of different malicious emails

Here's the typical sort of wording we are seeing in the dangerous emails:

Dear Sirs,

The Better Business Bureau has got the above mentioned complaint from one of your clients regarding their business relations with you.
The details of the consumer's concern are presented in enclosed document.
Please review this issue and let us know about your point of view.
Please open the ATTACHED REPORT to respond this complaint.

We look forward to your urgent attention to this matter.

Sincerely yours,

<NAME>

Dispute Counselor
Better Business Bureau

Sophos products detect the malware attack as Mal/BredoZp-B and Troj/Zbot-BUS.

Of course, this is far from the first time that the Better Business Bureau's name has been used by cybercriminals to spread malware - and, sadly, it's unlikely to be the last.

Be on your guard folks.

, , ,

4 Responses to BBB assistance malware attack strikes again

  1. Dan says:

    And they apparently don't speak English very well either.

  2. Internaut says:

    The first sentence is a dead give away with ..."has got the above ".

    "has got"????

    I wonder how many people that 'has got' the email, would open it. Really?! That many! Scary.

  3. Dan says:

    The BBB itself it practically criminal to begin with. Why anyone would take anything at all claiming to be from them seriously is beyond me.

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title="" rel=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <pre> <q cite=""> <strike> <strong>

About the author

Graham Cluley has worked in the computer security industry for more than 20 years, developing anti-virus software and doing quite a lot of talking about internet threats. He's won awards for his blogging, but is proudest of the text adventure games he wrote when he was still wearing short trousers. You can learn more about those (the games, not the trousers) at grahamcluley.com. Send Graham an email, subscribe to his updates on Facebook, follow him on Twitter and App.net, and circle him on Google Plus for regular updates.