FYI…

- http://isc.sans.org/diary.html?storyid=3224
Last Updated: 2007-08-02 18:16:47 UTC
"We have information that executive staff at 3 corporations are still being targeted with emails with mailicious attachments that AV vendors are finding hard to identify. The best and ongoing analysis of this highly successful attack is the BBB Phishing Trojan analysis by Joe Stewart of SecureWorks*. The information tends to show the recent attacks started to be detected by AV vendors on 07/31. One of our reports indicates that after the initial malware detection, new and undetected attachment variants were emailed. Malware samples submitted show coverage for at least one sample is still spotty…"
* http://www.secureworks.com/research/threat…threat=bbbphish

Trojan-Spy.Logsniff.aj
- http://research.sunbelt-software.com/threa…threatid=145086
(%WINDOWS%\ yhelp.dll
update1.exe
yhelp.dll)

:ph34r: