The Trojan couple increases spam spread rates

The total amount of spam e-mail spread in the first three quarters of the year increased sharply. The reason is that two Trojans download maliciously, using a form of PC attack and then use them to spread huge amounts of e-mail.

On Friday last week, research firm MessageLabs announced that a dangerous pair of Trojans made the rate of spam spread increase. They use sophisticated technology now that security companies can't catch up.

According to a UK security provider, the rate of spam increased dramatically to 72.9% in October compared to 64.4% in the previous month. The main reason is because two dangerous Trojans attacked PCs and used them to spread huge amounts of mail.

The Trojan couple increases spam spread rates Picture 1 " Warezov Trojan is the most dangerous Trojan we have seen in recent times. Every time an attack is made, it downloads the program or the next component, changes a few bytes of source code and makes it a new version This makes the antivirus system difficult to detect and identify, "said Paul Wood, an analyst at MessageLabs.

Although not finding the final convincing evidence, MessageLabs researchers think that by automatically changing its own source code, Warezov (with the " Stration " kernel ) expanded the attack window. "If anti-virus companies take 5 to 6 hours to create a symbol, the Trojan is much more extensive with new identities."

SpamThru, another source of malicious code in October, is a malicious source of malicious code for computers. SpamThru also has another name given by security companies as "spam cannon". It uses different unified mail templates to spread spam out of the network. That allows each time to run, spam takes control to take out millions of messages and still save the blacklist.

SpamThru's flexible " command-and-control " operation model also makes it difficult for Internet service providers (ISPs), researchers and accrediting agencies to control or lock their activity. SpamThru relies on P2P (peer-to-peer) communication between bots and the brain that controls their hackers. " Every bot knows about other bots on the same network. If a bot loses command and control channels, it can query alternate channels from other bots. This really increases the elasticity of botnets. ".

Together, these two Trojans combine to create a huge amount of spam in October. Research firm MessageLabs has tested and obtained nearly a million copies of Warezov's variants within a 24-hour period at the end of the month.

" Certainly, the rate of spam distribution will continue to increase until the end of this year ." Even MessageLabs's Wood researcher warns that fourth quarter is the history of spammers. " This is the highest increase rate ever. I think it will be just a little bit more and this number will be 100% ."

In the last month's report, MessageLabs also noted that while the total amount of phishing e-mail is declining, the percentage of phishing-related malicious messages still increases.

India is the country most heavily attacked by e-mail. According to the study, in October, in India, there is a mail containing malware for every 16 mail. There is plenty of evidence to suggest that almost a double the percentage of malware-containing mails is spam. The amount of spam in October increased by more than 20.5% compared to the previous month's 49.3%.

You can download the October report of MessageLabs (PDF file type) here.

3.5 ★ | 2 Vote

May be interested

  • Trojan forged Microsoft security warningsTrojan forged Microsoft security warnings
    a spam attack campaign impersonating microsoft's security warning message has just been booted by hackers with the goal of tricking users into downloading and installing a dangerous trojan.
  • What is a Trojan? How to avoid trojan attack?What is a Trojan?  How to avoid trojan attack?
    a trojan is not a virus, but its severity and impact are not different from viruses.
  • It's BBC's turn to be spoofed by trojans to spreadIt's BBC's turn to be spoofed by trojans to spread
    security experts have warned users about the emergence of a new type of trojan that spreads strongly via email. the trojan's screamer is sending out emails pretending to be the famous bbc news news agency with the content of the former prime minister
  • Appeared fake Google Toolbar trojansAppeared fake Google Toolbar trojans
    uk-based surfcontrol has issued a warning about the emergence of a new trojan forging the latest version of google toolbar. the trojan is spread primarily by a fake email path sent by a leading search provider.
  • Distributing spam with the theme of US-Iran warDistributing spam with the theme of US-Iran war
    taking advantage of the tension in relations between the united states and iran, from the weekends, hackers have triggered the spam wave bringing topics of war between the two sides.
  • Trojans stealing self-destruct appearTrojans stealing self-destruct appear
    the briz-f trojan is considered a very complex type of trojan that is 'implanted' into sites that spread pornographic images or take advantage of vulnerabilities in software to launch a complex attack. quite high on pc systems l
  • Apple fake Trojan sales announcementApple fake Trojan sales announcement
    security firm sophoslabs has warned about the spread of a backdoor trojan called troj / downdec-a. this trojan takes advantage of an apple sales announcement (about the ipod) to attack a user's computer.
  • Trojans appear fake Microsoft patchTrojans appear fake Microsoft patch
    a new spam campaign has just been launched over the weekend by the emergence of a trojan capable of stealing passwords attached to a genuine microsoft windows update.
  • Neprodoor trojan warning appears in VietnamNeprodoor trojan warning appears in Vietnam
    users of domestic computers have been warned about a new type of dangerous trojan named neprodoor originating from russia, which has appeared and spread on computers in vietnam.
  • Vietnam ranked 8th in the rate of virus infectionVietnam ranked 8th in the rate of virus infection
    kaspersky lab security company announced on november 10 the malware statistics in october 2009. accordingly, the rate of virus infection through the website of vietnam is 2.7%, ranking 8th among 10 countries with the highest infection rates.