Barack Obama sex video tries to steal your bank details

Sophos identified a a widespread spam campaign that claims to contain a link to a sex video of Barack Obama. Users that click on the link will not see the video they expected, but will download a Trojan horse known as Mal/Hupig-D onto their computers – giving the hackers access to confidential information which can be used to commit identity theft.
Samples intercepted by Sophos reveal that the emails claim to come from, and have the subject line ‘Obama sex video!!!’.  The email reads as follows:

Sensation!!! United States Senator for Illinois Barack Obama in 2007 was travel to Ukraine and have sex action with many ukrainian girls! You may view this private porno in a flash video. Download and view now. Please send this news to your friends!
Obama it’s not right choice!!!

Sophos experts note that normally in these types of malware attacks, the Trojan horse is simply installed rather than the promised video being shown.  In this case, however, users who click on the link in the emails download an executable file which does display a pornographic video (albeit one not starring Barack Obama) as it installs malicious code in the background.

What appears to be an amateur porn movie is displayed on the computer screen while the malware is doing its dirty work and infecting your Windows PC with spyware.

