False Weight Loss Advert Carries Malicious Link

 Analysis by: Farrel Moje

In our reseach, we stumbled upon a huge volume of spam posing as a weight loss advert. The click here in the spam message's body leads to a malicious website http://{BLOCKED}-25.com/?u=mlf80k9&o=fp2kvzu&t=sx2. This URL is known to distribute malware including spyware, password-cracking applications, keystroke trackers, viruses, among others. We are still investigating the huge volume of spam.

The URL is already blocked and the spammed messages are detected by anti-spam filtering in Trend Micro products. Remember to refrain from clicking links in email, especially from email that you don't remember subscribing to/signing up for.

 SPAM BLOCKING DATE / TIME: June 13, 2016 GMT-8
 TMASE INFO
  • ENGINE:8.0
  • PATTERN:2390