Slick social engineering: fake Windows re-activation

5 05 2007

via Symantec Security Response Weblog: MS Needs Your Credit Card Details?

Recently we came across an interesting Trojan sample, detected by Symantec as Trojan.Kardphisher. The Trojan is not very technical – it’s really just another classic social-engineering attack. What makes it interesting is that the author has obviously taken great pains to make it appear legitimate.When you restart your PC after the Trojan is installed, this window appears:


Actions

Information

Leave a comment