Angelina Jolie
Spammers are promising nude pics of Angelina Jolie to spread malware

Angelina Jolie 'nudes' fuel malware spike

Oldest trick in the spammers' book

Robert Jaques

One in every 833 emails in September were infected with malicious attachments compared to one in every 1,000 during August, new research reveals.

The jump in malware attachments was primarily due to a coordinated campaign by hackers to spam out the Pushdo Trojan during the second half of September, according to security firms.

Advertisement

The emails, which offered naked pictures of Hollywood actresses such as Angelina Jolie and Holly [sic] Berry, carry a malicious payload designed to give hackers control of infected PCs.

Security firm Sophos reported that Pushdo accounted for almost four in every five infected emails during a single 24-hour period in the last week of September.

"The Pushdo Trojan has been spammed out every Wednesday since March 2007 using a variety of enticing disguises," said Carole Theriault, senior security consultant at Sophos.

"But lately the cyber-criminals have stepped up a gear and have begun to spam innocent computer users at any time and on any day of the week.

"The trick of tempting users with scantily clad pictures of hot-looking girls is as old as the hills, but people still fall for it. This outbreak underlines that hackers have not turned their backs on using email as a vector for attack. "

Theriault added that web attacks are continuing to cause concern for computer users around the world, with the top two threats, Mal/Iframe and ObfJS, accounting for over three-quarters of infected web pages.

Sophos detected an average of 5,400 new compromised web pages hosting malicious code each day during September.

China remained at the top of the malware league, hosting more than half of all infected web pages detected by Sophos during September.

The proportion of compromised pages hosted in the US dropped during the last month from 20.8 per cent to 17.1 per cent, but the number of infected pages hosted in Russia increased from 11.3 per cent to 14.4 per cent.

Overall, more than 85 per cent of all compromised web pages worldwide are hosted in just three countries.

"Ukraine, however, stands out as a country with a disproportionate number of infected web pages," said Theriault.

"This is likely to be a result of a lack of IT education and available resource to tackle web-based malware.

"Ukrainian authorities should consider raising the profile of the cyber-crime threat. Through action, education and legislation, Ukraine could disappear completely from the top 10."

Top 10 list of email-based malware threats detected by Sophos in September 2007:

1. W32/Netsky 29.9%
2. Troj/Pushdo 27.4%
3. W32/Mytob 9.2%
4. W32/Zafi 8.3%
5. Mal/Iframe 6.0%
6. Mal/Behav 4.6%
7. W32/MyDoom 4.1%
8. Mal/Basine 2.5%
9. W32/Bagle 1.4%
10. W32/Traxg 1.2%

Top 10 list of web-based malware threats detected by Sophos in September 2007:

1. Mal/Iframe 59.5%
2. Mal/ObfJS 17.0%
3. Troj/Decdec 3.7%
4. Troj/Fujif 3.6%
5. Mal/EncPk 1.6%
6. Troj/Iffy 1.3%
7. Troj/Pintadd 1.3%
8. Troj/Psyme 1.0%
9. Mal/Packer 0.9%
10. Troj/Ifradv 0.8%
Other 9.3%

The top 10 list of countries hosting malware-infected web pages detected by Sophos in September 2007:

1. China (including Hong Kong) 54.9%
2. United States 17.1%
3. Russia 14.4%
4. Ukraine 3.7%
5. Germany 1.0%
=6. United Kingdom 0.7%
=6. Poland 0.7%
=6. Netherlands 0.7%
=9. Czech Republic 0.6%
=9. Canada 0.6%
Others 5.6%

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Spammers exploit protests in Burma

Users fooled by 'letter from the Dalai Lama'

Mobile phone

Experts slam mobile spying software

Companies interested in money, not security

Virus and phishing attacks soar in September

Second surge of email attacks targeted at executives

Cyber-criminals turn to smaller botnets

Size counts in online crime

Related whitepapers

Related jobs

Most watched

Summit: Salesforce.com on SaaS and information overload

How web services contribute to data headaches

V3.co.uk weekly debrief, 13 Nov 09

This week we discuss the inaugural V3.co.uk Summit

Analysis and Reports

Remote access - Three steps to getting connected

3.4 million UK professionals now work from home – is your company equipped?

Cost benefits of a global collaboration network

This white paper is a must read for organisations looking for evidence of the bottom-line benefits of high-definition video and voice communications

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

White paper library

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Spotlight

V3.co.uk weekly debrief, 13 Nov 09

This week we discuss the inaugural V3.co.uk Summit

Fingers on keyboard

New Flash vulnerability discovered

Web sites could be vulnerable to Flash attacks

Chris Adams

Summit: Microsoft Office to the rescue

Chris Adams, Office Client product manager for Microsoft UK, explains...

Illegal downloader

Industry and human rights campaigners united in opposition to "three strikes" plan

Critics says government proposals to curb illegal downloading are unworkable...

Primary Navigation