Advertisement
Promo

Security threats Toolkit

Mytob worm turns to phishing

Ingrid Marson ZDNet.co.uk

Published: 09 Jun 2005 16:00 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

IT security experts warned on Wednesday that the creators of the latest variants of the Mytob worm have borrowed tricks from phishers to infect more computer users.

Until now, the Mytob worm was propagated as email attachments. Once the worm was downloaded it installed a backdoor and used its own email engine to forward itself to addresses that it gathered from infected computers. The latest versions of the worm send out emails that contain a faked Web link pointing to a site that hosts the worm code, according to security company Sophos.

The emails masquerade as a legitimate email from the recipient's IT department or Internet service provider, and include references to the recipient's domain name and email address to give the message more legitimacy. Recipients are told that a security problem has been found with their account and they should click on the link to confirm the account.

Graham Cluley, a senior technology consultant for Sophos, said the email could cause problems for IT departments, as recipients will unwittingly click on links, thinking they are following legitimate instructions from their IT department.

"By using this disguise new versions of the Mytob worm attempt to lure the unwary into clicking on a dangerous web link," said Cluley in a statement. "This is a real headache for IT departments who often struggle to get their users to follow instructions. In this case, following the advice of the email would be a very bad idea."

Typically, phishing emails try to fool email users that they come from their bank, in an attempt to lure them to a fake Web site where they will disclose their account details.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
81 out of 173 people found this useful



Company/Topic Alerts

Create a new alert from the list below:





Video icon

Video

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters