Quote:
Originally Posted by jackm8
I don't think that it's about rar files at all. If I read this right, there's a shortcut that looks like a book file (kamasutra.epub.exe), that then installs this trojan.
|
Quote:
Originally Posted by DiapDealer
How does kamasutra.epub.exe look like a book file? Surely even the most novice potential book thief knows that ebooks aren't executables.
|
People aren't opening kamasutra.epub.exe, they're opening kamasutra.rar and extracting it not knowing that it also extracts hidden malware. The user opens the shortcut thinking it's the book but instead it goes to the hidden malware.
The
unacev2.dll vulnerability was also used tp extract hidden malware, except it was able to sneak it directly into the Windows startup folder.