Malware authors are using IP tracking methods to deliver the latest variant of malware. It’s reported that the malware Waledec sends localized news to the victims using GeoIP technologies. The malware lure the user by sending news about recent terror attacks in their city and other heavily localized news. Once infected with the malware the computer joins the Storm botnet and act as zombie.
However, this is not the first time Waledac attempted to use this localization technique. Waledac has been using this GeoIP functionality back in February, when the botnet sent fake coupons. Mal/Waledec-A is a malicious program frequently associated with the W32/Waled-Gen family of worms.