All the latest UK technology news, reviews and analysis

Security firms laugh at 'unstoppable Trojan' claims

by Iain Thomson

01 Mar 2007

Be the first to comment

  • Tweet this

Security firms have laughed off claims from Secure Computing that a new Trojan can evade traditional antivirus systems.

Secure Computing's TrustedSource labs issued an urgent alert last night that the 'Mespam' Trojan was on the loose and that ordinary antivirus software would not be able to stop it.

"This threat signifies a trend towards blog, message boards and webmail-related malware," the alert warned.

"What makes it particularly insidious is that antivirus detection from the leaders (McAfee, Symantec, Sophos, Trend Micro etc.) does not always work because Mespam uses server 'polymorphism', i.e. it is continuously 'repackaged' to make it appear different."

The Trojan was spreading after messages were spammed out urging computer users to visit mailfreepostcards.com and download a video.

Mespam is described as 'polymorphic' and TrustedSource claimed that this made it unstoppable by standard means because the signature changes constantly.

"Secure Computing's incorrect claim that Sophos could not deal with this threat gave the guys in our labs the best laugh of their day," said Graham Cluley, senior technology consultant at Sophos.

"Sophos customers had a bigger problem deciding which socks to put on this morning than they did with this malware."

Cluley said that Sophos had picked up the Trojan on 1 February and blocked it and the website it came from on 19 February.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

28%

2%

13%

57%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

.NET C# Dynamics CRM SQL Server Developer - Banking

C# Developer with MS Dynamics A global Bank is currently...

IT Systems Management Team Leader

CCNA accredited IT Systems Management Team Leader required...

Oracle DBA

Oracle Administrator (Oracle Agile PLM DBA) Title...

J2Me Mobile Developer

J2ME Mobile developer required to work in Yorkshire...

To send to more than one email address, simply separate each address with a comma.