Hotel Credit Card Wrong Transaction Email Malware Attack
Be on your guard! Emails claiming to be from a hotel about a wrong transaction on your credit card are being spammed worldwide - with the intention of infecting your computer with a malware.Here's a typical example. In this case it claims to come from the booking department of the Hotel Swissotel in Chicago:
The name of the hotel, the amount of money and the manager's name can vary from email to email. Similarly the subject lines vary as you can see in the examples below:
But all of the emails we have seen so far do claim to have a booking refund attached in a ZIP file, and this is where the malware attack is contained.
Of course, even if you weren't staying at the hotel on July 26th you might still be concerned that your credit card has been abused by someone who *was* enjoying luxurious room service, unfettered use of the mini-bar and a complimentary newspaper.
Recipients who are intrigued to find that they may be owed some money might open the ZIP file without thinking of the possible consequences, and infect their computer with a Trojan horse.
Once infected, remote hackers can take control of your computer - potentially using it to spam out other attacks or to steal information from you.
Sophos detects the malware as Troj/Zbot-AXZ and the ZIP file itself as Troj/Invo-Zip.
Make sure that your anti-virus defences are up-to-date and always be suspicious of unsolicited emails that try to lure you into opening attachments. It could be a ploy by a hacker to hijack your computer.
Reference : Naked Security News
Computer Forensic, Internet Investigation and IT Consultant