Email-based attack exploits Black Friday Apple shoppers

updated 10:55 am EST, Fri November 25, 2011

Malware targets Windows users


An email scam is exploiting Black Friday shoppers interested in picking up iTunes gift cards, says German site Eleven Security. The message uses the subject line "iTunes Gift Certificate," and has has an attached file listed as "Gift_Certificate_iT9581.zip". A simple body of text promises that the attachment contains a "certificate code" which can be redeemed for $50 in credit toward "video, music, games" at the iTunes Store.

In reality the ZIP file contains executables with malware directed at Windows users. If installed, the code then contacts a remote server and waits for further instructions, although the exact intention of the software's authors is unclear. Evidence that the emails are targeting American Thanksgiving shoppers is said to include timing, choice of language, and the fact that half of the emails sent are coming from US addresses.

The scam should be easy to identify. The email sender is listed as "official@itunes.apple.com," an address Apple never uses. The company also never sends plain-text messages, or redeemable codes buried in other files. The text is poorly written, for example using inconsistent spellings of iTunes.


by MacNN Staff


toggle

Comments

Login Here

Not a member of the MacNN forums? Register now for free.

 
close
Photo
toggle

Network Headlines

toggle

Most Popular

10 Most Read

Recent Reviews

iHome iW2 AirPlay speaker

iHome generally isn't known as a luxury brand when it comes to audio, but it is prolific -- the company's docks and speakers are every ...

Logitech Ultrathin Keyboard Cover

One of the iPad's main weaknesses has always been productivity. It's not a question of apps; while it has taken a little time for a na ...

Logitech UE Air Speaker

If maybe a little more slowly than Apple would like, AirPlay is becoming a staple of the wireless speaker market for iOS devices. The ...

toggle

Most Commented

10 Most Discussed