F-Secure has posted a blog entry about a malware that they have received via email. They included many screen shots of the spam and explain thoroughly what the email is all about.

There is a PDF attachment and they noted that it is not a normal PDF document. The file takes advantage of an Adobe Acrobat exploit.

They explained that the exploit drops a program called winkey.exe in a user’s C:\Program Files\Update\ directory and that this software collects whatever a user types on his or her keyboard to a server that is running at a .org domain.

Source: F-Secure