Skip to main content

Fake Firefox update email - don't click, or you may have your passwords stolen

Fake Firefox update email - don't click, or you may have your passwords stolen

Description: Fake FirefoxAlthough we see some very sneaky social engineering tricks used by scammers and cybercriminals on occasions, designed to trick users into making unwise decisions, we also see some very basic attempts at online crime.

Take, for instance, this email which was spammed out this weekend pretending to be an advisory about a new update to the popular Firefox web browser.

Hopefully no regular reader of Naked Security would fall for it.

Description: Fake Firefox update email

Subject: New version released.

Message body:

Important notice
A Firefox software update is a quick download of small amounts of new code to your existing Firefox browser. These small patches can contain security fixes or other little changes to the browser to ensure that you are using the best version of Firefox available. Firefox is constantly evolving as our community finds ways to make it better, and as we adjust to the latest security threats. Keeping your Firefox up-to-date is the best way to make sure that you are using the smartest, fastest and . most importantly . safest version of Firefox available. A Firefox update will not make any changes to your bookmarks, saved passwords or other settings. However, there is a possibility that some of your Add-ons won.t be immediately compatible with new updates.
For security reasons please update your firefox version now
[LINK]

There are no surprises here. The link downloads an executable file, which bundles together an installer for Mozilla Firefox 5.0.1 and... a password-stealing Trojan horse.

Sophos already detected the Trojan horse as Troj/PWS-BSF.

Our labs have also added detection for the actual bundle itself, which we're identifying as Troj/Mdrop-DPO.

You should always exercise caution when you're asked to click on a link in an unsolicited email.

And, in particular, don't forget that Firefox automatically updates itself - so you should never have to act upon an email like this. If you want to manually look for the latest update, simply open Firefox and go to the Help menu and select About Firefox.

Here's a link to Mozilla's website, where you can download the real latest version of Firefox.

 

 

Thanks & Regards

============================

Mohammed Rahman Mecheri

 

System Analyst – Network & Infrastructure
Kamal Osman Jamjoom Group LLC.
Unit #422, Sultan Business Centre
P.O Box 27844, Dubai, UAE
Tel:       +971 (4) 3355232 Extn: 1339
Fax:      +971 (4) 3355231
Mobile:  +971 (50) 9774048
Email:   
mrahman.koj@gmail.com

             mrahman_koj@hotmail.com

             mrahman_koj_est@yahoo.co.uk

Web :    https://about.me/mrahman

============================

 

Comments

Popular posts from this blog

Tech Tips - Turn on Delegate Access

Turn on Delegate Access A delegate automatically receives Send on Behalf permissions. This means your delegate can do the following: ·          Respond to a meeting request sent to you, the manager. ·          Receive meeting request responses sent to you, the manager. ·          Compose and send an e-mail message that, when received, will have Delegate Name   on behalf of   Manager Name   next to   From . By default, the delegate can read only the meeting requests and responses sent to the manager. The delegate does not have access to read any other messages in your   Inbox . 1.      On the   Tools   menu, click   Options . 2.      Click the   Delegates   tab, and then click   Add . If the   Delegates   tab or the   Add   button is mi...

How do I choose my password?

How do I choose my password? Your password is more than just a key to your online account. If your password falls into the wrong hands, someone can easily impersonate you while online, sign your name to online service agreements or contracts, engage in transactions, or change your account information. So, choose your password carefully and then keep it safe from others. A password is like a toothbrush: Choose a good one and don't share it. A Yahoo! password can be any length, and can contain spaces, symbols, or numbers. With so many options, you should be able to come up with a password that's easy for you to remember but impossible for someone else to figure out. A password is a secret that only you should know. Here are some tips for choosing a strong password - one that is difficult to guess. . Choose a password you'll remember. It should be memorable for you (so that you don't have to write it down or leave it in the open), but difficult for others to guess....

Tech Tip - How to Search Like a Pro

Technology Tip - How to Search Like a Pro The internet is big, really, really big.  And it keeps growing bigger every day.  If you want to search it effectively you’re going to need to develop a couple of tricks to help you narrow the search.  Here’s a few real easy ones to integrate into your next search: Using +, - and “ “ (quotes) to narrow your searches: Lets say you were looking up apples on   Google.com .  If you just type in “apples” you get 22 million returns.  A few more sites than you can check in an afternoon so lets narrow the search down.  Let's say that what you're really interested in is   green apples .  To see all the apple websites that also have the word “green” on them type this: Now you will only see those apple sites that also have the word green on them.  Unfortunately we are still getting almost 6 million returned websites: To narrow the search even more lets elimina...