Home Malware Programs Trojans UPSInv.zip

UPSInv.zip

Posted: January 22, 2009

UPSInv.zip is a malicious Trojan that comes attached to a sham email. The UPSInv.zip email disguises itself as an invoice from UPS.

The UPSInv.zip email reads:

From: United Postal Service
Subject: Delivery problems
Hello!
Sorry, we were not able to deliver postal package you sent on December the 25th in time because the recipientÂ's address is not correct. Please print out the invoice copy attached and collect the package at our office.
Your UPS Support Team
Attachment: UPSInv.zip

If you open the UPSInv.zip email attachment, a Trojan will be activated and may enable hacker's access to your PC. The UPSInv.zip Trojan is dangerous because it can make you vulnerable to identity theft and possible financial loss. If you receive the UPSInv.zip, do NOT open the attachment. If you receive an email with the attachment UPSInv.zip, delete the email at once.

If you happen to open the attachment, notify your bank and credit card companies. Your accounts may need to be closed and changed. In addition, remove the infection as soon as possible with a malware removal program.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\twain32\local.ds
    2 %System%\twain32\user.ds
    3 %System%\twain32\user.ds.lll
    4 %System%\twex.exe
    5 UPSInv.exe
Loading...