F-Secure posted a blog entry about a brazilian bank spam.
It includes a link and it is detected as Trojan-Downloader:W32/Banload.FUA. This downloads a trojan and that trojan could get personal and banking details about the reader. It also posts the data into a php file on a server.
The blog entry include three images. One on the email message taken from an Outlook software. The other one is a php code from the link in the spam. The last one is a web page which has a foreign language. The english translation is “under construction”.
Source: F-Secure

Articles
Blogs
Kits
Forums