R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

'Anti-spyware' Trojan hits 100,000 UK firms

Social engineering never goes out of fashion

Robert Jaques, vnunet.com 24 Jul 2006
ADVERTISEMENT

An email claiming to originate from an anti-spyware company is being used to spread a new Trojan downloader, security experts warned today.

BlackSpider Technologies said that the email is a classic example of social engineering.

It purports to come from the customer service department of a legitimate anti-spyware company confirming a subscription to one of its products and the deduction of £79.39 from the recipient's credit card account.

The email goes on to claim that the attachment contains the detailed invoice, but it actually contains the Downloader.Bancos Trojan which can be used to download new malware onto the PC.

The virus enjoyed a window of exposure of just three and a half hours, according to BlackSpider.

It was first seen by the firm at 10:06 GMT on 20 July and 100,000 of the virus-laden emails were sent to UK businesses before it was finally patched at 13:40.

The body of the email reads:

Dear Madame/Sir

Thank you for your order. Spysoftcentral processes orders and collects payments on behalf of PC Tools.

Your credit card (VISA) has been debited with GBP 79.39 and the level of credit card authorization has been changed.

Please note that "www.spysoftcentral.com" will appear on your credit card statement, and not the name of the publisher (PC Tools).

You will receive detailed information on the shipment in a separate e-mail that was sent at the same time as this e-mail.

James Kay, chief technology officer at BlackSpider, said: "This is not the first time virus writers have used PC users' anxiety over spyware to entice them to open a malicious attachment.

"As far as social engineering goes, I would not be surprised if lots of people were duped by this ploy."


All

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Evolution Recruitment Solutions
VB.net, MS SQL server, t-SQL stored procedures, PHP, HTML, CSS, MySQL with telemetry systems used by the ultilities sector. Duties are the development implementation and maintenance of SQL Server Database applications for Telemetry solutions. Must ... more >
| Randstad Technologies
Senior Solutions Architect x2 urgently required to join market-leading IT services organisation with offices in the Middlesex area. This role requires a significant experience of working as a Senior Architect, including; planning, design, translation and ... more >
| Evolution Recruitment Solutions
Application Penetration Testing Specialists - Reading - CHECK Team / Member / Leader / Crest Certified / Tiger Scheme Senior Tester, required to join a Global leader in IT security and top 10 World-wide software ... more >
| Hays Information Technology
Prestigious opportunity with a Pioneering Communications Giant for an experienced Delivery Manager! Successful candidates will possess a proven track record in managing and delivering large scale complex Billing and Financial systems programmes within Telecoms or ... more >
More job opportunities