Virus
R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

Malware goes back to the future in May

New versions of old threats come back to haunt users

Ian Williams, vnunet.com 05 Jun 2007
ADVERTISEMENT

Security reports from May seem to have to transported us back a few years, with an old fashioned dialler and new versions of Netsky, Bagle, Sober and Puce topping the list of malware offenders.

Antivirus company Kaspersky said that new versions of old worms made a comeback last month, including Sober.aa jumping to fourth place.

The previous version of this worm, Sober.z, dates back to the middle of November 2005.

Although Sober.aa is described as "primitive", it has been able to surpass worms with far more advanced functionality. Kaspersky predicts that it may well climb higher in the ratings in the months to come.

Topping security firm Fortinet's threat list in May is a dialler designed to call premium long distance numbers. However, like all modern bots, it may also download, execute and upgrade components.

W32/Dialer.PZ!tr was primarily reported throughout Mexico and the US, dialling into locations in Europe and Africa.

A new P2P worm called Puce.G, which spreads itself and infects files through file-sharing software, was first place on the BitDefender chart with 10.31 per cent of total reports. The worm last topped the malware charts in October 2006.

"With the virtual disappearance of mass-mailers form the top infectors, the trend towards consolidation seems to have reduced somewhat," said Viorel Canja, head of BitDefender Labs.

Meanwhile, data from MessageLabs shows an increase in sudden spam surges, or 'spikes', which target individual domains in an aggressive spam attack, similar to the recent assault on Tiscali.

In one spam spike that lasted only 11 hours, more than 10,000 messages were attempted, accounting for more than 75 per cent of the total messages received by the domain during the entire period.

"This month the bad guys continued with their aggressive attacks by developing new tactics to fly under the radar and cause the most damage," said Mark Sunner, chief security analyst at MessageLabs.

"With the increase in spam spikes and new techniques with image spam, it is crucial for businesses to take a multi-layered security approach among email, web and IM to protect employees and systems from malicious attacks."

While malware creators are resurrecting old worms, it appears that spammers continue to innovate and employ new methods to elude traditional anti-spam solutions.

Rather than embedding images in the body of an email message, spammers are now hosting images on sites that do not require registration and include links to those sites or an HTML image in the email message.

See also:

Infosecurity Europe 2007Infected web pages now the attack du jour  26 Apr 2007
Infosecurity Europe 2007Backdoors, key-loggers and droppers the main malware menaces  26 Apr 2007
HackingMalicious code writers target the web in earnest  25 Apr 2007
Accounts for almost 50 per cent of all malware seen during January  31 Jan 2007

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
(Poole, Bournemouth, Dorset, Hampshire), United Kingdom | RNLI
Analyst - Network & Telecoms - £35,000+ - Poole, Bournemouth, Dorset, Hampshire Our data and voice network team's impact on the organisation is considerable. And with something in the region of 5,000 direct users connected ... more >
Telford, Shropshire, United Kingdom | EDS
EDS are currently looking to recruit a PMO Support Analyst to join our Project Management Defence team in Telford, Shropshire. Summary: Within DII Service Management. To perform the PMO function for SM Service Introduction. This ... more >
Sandiacre, Nottinghamshire, United Kingdom | NHS Midlands
Workstream Lead Requirement, Design, Build and Test (Business Analyst) Strategic IM&T - Delivery   Band 7:      £29,091 - £38,352 per annum Hours:       37.5 per week Base:         Octavia House, Sandiacre Job Ref:     973 - 080810   ... more >
Inverness, United Kingdom | NHS Scotland
CORPORATE SERVICES E-HEALTH DEPARTMENT  RAIGMORE HOSPITAL INVERNESS TECHNICAL DEVELOPMENT TEAM IT TECHNICAL SPECIALIST  £24,103 to £32,653 PA An exciting opportunity has arisen to join the technical development team within the eHealth Department. We are looking ... more >
More job opportunities