Computer virus
The latest Storm attack uses email greeting cards to dupe users
R E L A T E D   C O N T E N T
ADVERTISEMENT

Storm worm seeks out April fools

New malware attack no laughing matter

Shaun Nichols in California, vnunet.com 01 Apr 2008
ADVERTISEMENT

The infamous Storm worm has used April Fools' Day to launch its latest spam offensive.

The new attack uses email greeting cards to dupe users into downloading and launching the Trojan application.

Spam messages inform users that they have received an April Fools' greeting card. On clicking the link, the user is redirected to an all-numeric URL and a page which attempts to automatically download an executable file.

The executable contains malware which will add the user's PC to the huge Storm botnet.

The malware network uses peer-to-peer networking tactics to update the software and instruct machines within the network to perform further malicious activities.

Jose Nazario, senior security engineer at Arbor Networks, said that the attack appears to have been launched quite recently.

Nazario reported in a blog posting that the campaign "appears to have started in the past few hours, and reports indicate it was in preparation for the past 24 hours or so".

The attacks follow a familiar pattern for Storm. The operators behind the malware have been using phoney holiday greeting cards to spread the malware almost since the worm was first discovered.

Valentine's Day and New Year's Day have also been recent catalysts for Storm worm attacks.

The storm botnet has become something of a legend within the security community. Researchers have warned that its sophistication in spreading and managing infections could serve as a template for future worms.

There have also been fears that the storm botnet is being rented out to other criminal enterprises which are using its extensive network for phishing runs.

See also:

GoogleSharp rise in spam points to Gmail breach  11 Mar 2008
Spam'You've won £850,000!'  04 Mar 2008
Trojan horseNew worms acting in Trojan-like ways  04 Mar 2008

All Enterprise Security Technology
Tags: Storm, Security

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
London, United Kingdom | The Crown Estate
 EDM Administrator - London - £22,300 to £24,200pa The Crown Estate is a unique organisation that manages a vast and varied property portfolio, comprising commercial, agricultural and marine interests throughout Britain. We are looking for an ... more >
London, United Kingdom | City of London
ICT Project Officer - Guildhall, London EC2 18-month fixed-term contract Bring your project management expertise to one of the country's most prestigious institutions. The City of London is the local authority for the Square Mile, ... more >
Reading, Berkshire, United Kingdom | EDS
Technical Hosting Engineer Location - Reading Job Description: This is an applications infrastructure and engineering role within the team. This role is primarily focussed on developing and evolving a quarantine application hosting service. The quarantine ... more >
Central London, United Kingdom | MI5 Security Service
Communications Centre Engineer - Competitive salaries + excellent benefits - Central London Getting the best out of technology is critical to helping us protect the UK. Join MI5 and use your skills and experience to ... more >
More job opportunities