Symantec Identifies Sophisticated Zipped Trojan via Spam Attack

by Playfuls Staff | 14th April 2007

As of April 12, Symantec has identified a new, sophisticated spam attack leveraging Trojan.Peacomm, or Storm Trojan, distributed via a password protected Zip file in the spam messages. [more]

Symantec Security Response has raised the ThreatCon level to a Level 2 with Level 4 being the highest alert. Symantec has detected more than 2 million spam messages – one of the largest spam surges in recent months – distributed worldwide, targeting mostly English speaking countries and affecting both enterprises and consumers. This spam attack is part of the ongoing evolution of Storm Trojan since its original detection in January 2007.

A new twist to this attack is the social engineering tactic the attacker is using to infect people with the Trojan. The subject lines in the spam messages are alerting people of a fake virus detected, such as “Trojan Detected!” or “Virus Activity Detected”, to entice people to open the Zip file.

Symantec customers are already protected against the threat that resides within the Zip file through the virus definitions that were issued in January 2007. Symantec recommends that consumer and enterprises download the new virus definitions that will detect the Zip file itself.


Spacer Spacer