R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

'Anti-spyware' Trojan hits 100,000 UK firms

Social engineering never goes out of fashion

Robert Jaques, vnunet.com 24 Jul 2006
ADVERTISEMENT

An email claiming to originate from an anti-spyware company is being used to spread a new Trojan downloader, security experts warned today.

BlackSpider Technologies said that the email is a classic example of social engineering.

It purports to come from the customer service department of a legitimate anti-spyware company confirming a subscription to one of its products and the deduction of £79.39 from the recipient's credit card account.

The email goes on to claim that the attachment contains the detailed invoice, but it actually contains the Downloader.Bancos Trojan which can be used to download new malware onto the PC.

The virus enjoyed a window of exposure of just three and a half hours, according to BlackSpider.

It was first seen by the firm at 10:06 GMT on 20 July and 100,000 of the virus-laden emails were sent to UK businesses before it was finally patched at 13:40.

The body of the email reads:

Dear Madame/Sir

Thank you for your order. Spysoftcentral processes orders and collects payments on behalf of PC Tools.

Your credit card (VISA) has been debited with GBP 79.39 and the level of credit card authorization has been changed.

Please note that "www.spysoftcentral.com" will appear on your credit card statement, and not the name of the publisher (PC Tools).

You will receive detailed information on the shipment in a separate e-mail that was sent at the same time as this e-mail.

James Kay, chief technology officer at BlackSpider, said: "This is not the first time virus writers have used PC users' anxiety over spyware to entice them to open a malicious attachment.

"As far as social engineering goes, I would not be surprised if lots of people were duped by this ploy."


All

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Computer People
SQL Server 2008 Developer – Staffordshire – Market Rate – 3 - 6 month initial role Computer People have an exciting opportunity for a SQL Server 2008 Developer within an Large organisation based in Staffordshire. ... more >
| Aston Carter
JAVA J2SE DEVELOPER – CREDIT DERIVATIVES amp; Credit Derivatives (CDS, CDO, CDX, IRD, IRS), Exotics and Structured Hybrid products. Technical skills include: Server side Java, SQL, Sybase, SOAP, WEB SERVICE and OOA/D. Nice to have ... more >
| Aston Carter
JAVA J2SE DEVELOPER – CREDIT DERIVATIVES amp; Credit Derivatives (CDS, CDO, CDX, IRD, IRS), Exotics and Structured Hybrid products. Technical skills include: Server side Java, SQL, Sybase, SOAP, WEB SERVICE and OOA/D. Nice to have ... more >
| Aston Carter
Java, C++, SQL Analyst Developer – Interest Rate Risk Java, C++, SQL, Analyst Developer, interest rate, risk, credit risk, market risk, perl, scripting • At least 2-5 years experience developing in C++ and Java • ... more >
More job opportunities