Spam and Malware Roundup

I may have disappeared for the last couple weeks, but the spam and malware did not, so this post is a roundup of various outbreaks that I wasn’t able to report on at the moment they happened. In parentheses is the date I would have (should’ve could’ve) reported on these items had I been truly [...]

Storm Worm “Invades Iran”

Something about the “rockets red glare” of July 4th must have gotten the Storm Wormers in the mood for aggressive action, and the next outbreak has been a faux invasion of Iran, with the following malware web site:

Based on a quick scan of the iran_occupation.exe malware file by VirusTotal, the results show that only 14 [...]

Malware earthquake hoax

June 19th, 2008 by Rebecca Herson | Category: Email Security, Zombies/Botnets | 1 Comment »

For some people, hearing about China digging itself out of one of the worst earthquakes in recent memory inspires them to do good works, donate money, join the Peace Corps…. For spammers it is merely inspiration for the next wave of social engineering to attempt to recruit a new army of zombies. Building on human [...]

New Love Malware Outbreak

Commtouch detection team identified a new email-borne malware outbreak yesterday, another in the “love” themed attacks. It is a blended threat, with simple love-oriented subjects, and within the body of the email message a hyperlink to a site that downloads a malware file - a Storm worm variant known as Zhelatin or Nuwar. Our lab [...]

Malware Writers Send an Early Valentine (if outbreaks are a sign of love)

January 15th, 2008 by Rebecca Herson | Category: Email Security, Spam Favorites | 3 Comments »

Commtouch Labs is reporting mid-level volumes of a love-themed blended attack generated from zombies. The messages are tiny (around 2k), and have a love-oriented subject (e.g. “Memories of you”), and a short love-oriented message in the body (e.g. “A token of my love”; “falling in love with you”; “Happy I’ll be your bride”), with a [...]

New Year’s Ecard Blended Threat

December 29th, 2007 by Rebecca Herson | Category: Data & Research, Email Security | Leave a comment »

Spammers and virus writers have latched onto holidays and ecards to distribute their malicious messages, and here’s a recent outbreak that blends both together, just in time for the New Year’s Holiday. Samples similar to the screenshot below were first seen in Commtouch Detection Centers on December 25, 14:45 GMT (I guess the spammers assumed [...]

Storm botnet strikes on Xmas eve

December 24th, 2007 by Nikki | Category: Spam Favorites | Leave a comment »

‘Twas the night before Christmas and all through the house, spam and malware lurked behind every click of the mouse.
On December 24th, just in time for the holidays, the Commtouch Detection Center picked up a new blended threat spam outbreak. This time in the form of an innocent looking email with a not-so-innocent hyperlink to a [...]

2008: Year of the Storm Trojan?

December 5th, 2007 by Nikki | Category: Email Security | Leave a comment »

ZDNet’s Richard Stiennon just published his Ten threat predictions for 2008. Number 8 on his list is an ominous warning that we ain’t seen nothing yet from the Storm Trojan peer-to-peer botnet:
8. The world learns what the Storm Trojan is for. The Storm Trojan is one of the most sophisticated pieces of malware ever. It has [...]

Storm worm now preys on guilty conscience

November 18th, 2007 by Rebecca Herson | Category: Email Security | Leave a comment »

Imagine receiving an anonymous email from someone who claims to be a private detective, who proves that he is listening to your phone calls by attaching a tape-recording to the email message. Intrigued enough to click on the attachment? Perhaps, if you have something to hide…
Preying on exactly these fears is latest malware attack, in [...]

FBI Warns Public of Email Scams

July 18th, 2007 by Rebecca Herson | Category: Miscellaneous | Leave a comment »

The FBI sent out a press announcement yesterday, warning the public about three scams. The three scams are:
-e-cards containing malware
-fraudulent emails misrepresenting the FBI using pictures of the FBI Director, seal, letter head, and/or banners
-email claiming to be from an official of the U.S. military sent on behalf of American soldiers stationed overseas
We have seen [...]