{"id":72,"date":"2015-03-20T03:01:14","date_gmt":"2015-03-20T02:01:14","guid":{"rendered":"http:\/\/www.radiolinkplus.cz\/?p=72"},"modified":"2015-04-01T03:02:09","modified_gmt":"2015-04-01T01:02:09","slug":"upozorneni-pro-uzivatele-upozorneni-na-falesne-e-maily-od-prepravnich-spolecnosti","status":"publish","type":"post","link":"https:\/\/www.radiolinkplus.cz\/upozorneni-pro-uzivatele-upozorneni-na-falesne-e-maily-od-prepravnich-spolecnosti\/","title":{"rendered":"Upozorn\u011bn\u00ed pro u\u017eivatele: Upozorn\u011bn\u00ed na fale\u0161n\u00e9 e-maily od p\u0159epravn\u00edch spole\u010dnost\u00ed!"},"content":{"rendered":"

Podobn\u011b jako fale\u0161n\u00e9 e-maily od \u010cesk\u00e9 po\u0161ty jsou nyn\u00ed rozes\u00edl\u00e1ny tak\u00e9 informace o p\u0159evzet\u00ed z\u00e1silky, kter\u00e9 se tv\u00e1\u0159i, \u017ee jsou od spole\u010dnosti DHL. Fale\u0161n\u00fd e-mail v\u0161ak p\u0159\u00edjemce obdr\u017e\u00ed od \u201eDHL Logistik-Team\u201c afrankenberger@intern.cvjm-muenchen.org <\/a>, kter\u00e1 nem\u00e1 s touto spole\u010dnost\u00ed nic spole\u010dn\u00e9ho. V t\u011ble zpr\u00e1vy jsou informace o p\u0159evzet\u00ed z\u00e1silky spolu s \u010d\u00edslem objedn\u00e1vky, kter\u00e1 odkazuje na dom\u00e9nu http:\/\/sfcofficefurniture.com\/E10I43GRh5<\/strong>. Kombinace p\u00edsmen a \u010d\u00edsel se v\u0161ak samoz\u0159ejm\u011b m\u016f\u017ee li\u0161it. Na dan\u00e9 URL se nach\u00e1z\u00ed .ZIP soubor, kter\u00fd nab\u00e1d\u00e1 k jeho otev\u0159en\u00ed resp. ulo\u017een\u00ed. Obsahem tohoto souboru je v\u0161ak pravd\u011bpodobn\u011b trojsk\u00fd k\u016fn<\/a>, kter\u00fd otev\u00edr\u00e1 tzv. zadn\u00ed vr\u00e1tka<\/a> do napaden\u00e9ho PC.<\/p>\n

P\u0159i na\u0161\u00ed anal\u00fdze byl tento malware detekov\u00e1n jen t\u0159emi z 57 antivir\u016f.<\/p>\n

Znefunk\u010dn\u011bn\u00ed dom\u00e9ny ji\u017e prob\u011bhlo formou blokov\u00e1n\u00ed IPv4 adresy, nen\u00ed v\u0161ak vylou\u010deno, \u017ee se po znovuna\u010dten\u00ed vyrovn\u00e1vac\u00ed pam\u011bti znovu objev\u00fd na jin\u00e9 IPv4 adrese.<\/strong><\/p><\/blockquote>\n

\"DHLphishing\"