Sophos posted a blog entry today about a spam which contains a Christmas Monkeys application. The article notes that the email contains a file, Christmas Monkeys.exe. The file extracts two files which are named a.exe and b.exe. The a.exe file launches a Flash cartoon which is harmless but the b.exe is a backdoor trojan which is silently executed.

Another topic that is located in the same blog entry is a greeting card worm. When users click the link in the greeting card email, it would take the user to a malicious drop site. Sophos mentioned that a variety of domains is involved.

Source: Sophos