Surge in password-protected malware

Experts warn of viruses travelling in password-protected zip files.

There has been a surge in viruses sent in the form of an apparently trustworthy password-protected zip file attachment, security experts are warning.

Messaging security specialist Email Systems says more virus writers than ever before are delivering their malicious code as either an encrypted or password-protected email, causing even the security-savvy to fall victim unwittingly.

Advertisement - Article continues below

The first viruses hidden in supposedly safe zip attachments were identified six months ago, said Greg Miller, marketing director at Email Systems. He said the situation has worsened considerably in recent weeks with a significant increase in the number of such mails being propagated.

"This is another step change in the tactics of the virus industry," said Millar. "We've seen a drop off in viruses delivered by email in the last year or so. Now there's obviously been another fluctuation in what virus writers are up to. They are getting even cleverer, and hiding the viruses a little bit deeper."

The new batch of virus laden emails typically contain the Trojan.Peacomm virus, also known as the Storm Trojan, which is around 77Kb in size and usually contained within either an encrypted email or a password-protected zip attachment to an email.

The emails sometimes contain a security warning, supposedly offering to protect the user from a threat. The phrase ATTN! is frequently prominent within the subject line of such emails, which also sometimes proclaim 'Worm Detected!', 'Virus Detected!', 'Spyware Alert!' or 'Warning!'

Advertisement
Advertisement - Article continues below
Advertisement - Article continues below

On receipt of such an email, users are prompted with a password and thereby are unwittingly able to release the virus on their machine. On release, the Storm Trojan virus is designed to retrieve additional malicious code from the internet.

"The huge rise in spam levels we saw before Christmas was about swamping people with sheer volume, hoping to catch them out that way," said Millar. "This is another change in an ever shifting range of methods."

During the last few weeks, he says, Email Systems has quarantined hundreds of thousands of such emails - a major increase from the tens of thousands witnessed last year.

Featured Resources

Preparing for long-term remote working after COVID-19

Learn how to safely and securely enable your remote workforce

Download now

Cloud vs on-premise storage: What’s right for you?

Key considerations driving document storage decisions for businesses

Download now

Staying ahead of the game in the world of data

Create successful marketing campaigns by understanding your customers better

Download now

Transforming productivity

Solutions that facilitate work at full speed

Download now
Advertisement

Recommended

Visit/security/ransomware/356292/university-of-california-gets-fleeced-by-hackers-for-114-million
ransomware

University of California gets fleeced by hackers for $1.14 million

30 Jun 2020
Visit/security/cyber-security/356289/australia-announces-135b-investment-in-cybersecurity
cyber security

Australia announces $1.35 billion investment in cyber security

30 Jun 2020
Visit/cloud/cloud-security/356288/csa-and-issa-form-cybersecurity-partnership
cloud security

CSA and ISSA form cyber security partnership

30 Jun 2020
Visit/business/policy-legislation/356215/senators-propose-a-bill-aimed-at-ending-warrant-proof-encryption
Policy & legislation

Senators propose a bill aimed at ending warrant-proof encryption

24 Jun 2020

Most Popular

Visit/laptops/29190/how-to-find-ram-speed-size-and-type
Laptops

How to find RAM speed, size and type

24 Jun 2020
Visit/cloud/356260/the-road-to-recovery
Sponsored

The road to recovery

30 Jun 2020
Visit/business-strategy/it-infrastructure/356258/the-growing-case-for-it-flexibility
Sponsored

The growing case for IT flexibility

30 Jun 2020