An email making the rounds requesting you to change your Facebook password hides malware. The email has the subject line “You requested a new Facebook password.”
The body of the email reads:
“You have received a secure message. You will be prompted to open (view) the file or save (download) it to your computer. For best results, save the file first, then open it. Read your secure message by opening the attachment.”
In a November of 2012 a similar email used to target KeyBank, HSBC and CitiBank clients was sent. The only change between this campaign and the previous one is that the email looks like it is coming from Facebook.
The malicious email being is pictured here: