New malware emails spoof CNN news item and Adobe player

Throughout the day we got numerous emails that contain a link to the “spoofed” CNN web site hosting malware file Adobe_Player10.exe.

Sample e-mail:

From: report@cnn.com
Subject: Israel At ‘War to the Bitter End,’ Strikes Key Hamas …
Date: January 8, 2009 2:24:13 PM GMT+01:00
To: ___@insecuremag.com
Reply-To: ovwgavlxwnyw@borg.it.uswc.uswest.com

Israel offers short respite from strikes.
Israel will halt its bombardment of Gaza for three hours every day to allow residents of the Hamas-ruled Palestinian territory to obtain much-needed supplies, a military spokesman says.
The images broadcast here were graphic and striking.
The Al Jazeera English report below captures the extent of the devastation caused by the initial strikes.

Proceed to view details:

http ://edition.cnn.2009.authentication.world-
hqucfpk58.installflashadobeplaye10.com/israel
-gaza.htm?/BusinessLogin/VIDEO=vd0nli49yyslkv3

2009 Cable News Network. A Time Warner Company. All Rights Reserved.

The web site that opens, spoofs CNN news article on the Israeli/Palestinian conflict:

Clicking the video play button generates a message about a missing codec:

Clicking the appropriate “get player” button downloads the malware file Adobe_Player10.exe