VIA Root
VIARoot Security News Security alerts Business IT security Services Security Tools About VIARoot
World Cup 2010 a great reason to send spam
Search
Vulnerabilities Alerts
Windows Zero-Day Exploit Uses Shortcuts And USB Drives
Windows
Hugo Jean, Heptacube Inc.
2010-07-16 15:42:51
The malware spreads through removable drives even if AutoPlay is disabled, installs rootkit on the computer.
Phishing On 15 US Banks Spreads With The Zeus Trojan
phishing
Hugo Jean, Heptacube Inc.
2010-07-14 12:26:24
False 'Verified by Visa' and 'MasterCard SecureCode' pages harvest customers' personal data.
IT Directory
Wiseleap Solutions Inc.
Founded in 2005, Wiseleap Solutions Inc.'s mission consists in providing companies with the information necessary to make cri [...]
IT Ration Consulting Inc.
IT-Ration Consulting inc has been a NetSuite Partner since 2005 and helps your enterprise grow by aligning your Information T [...]
HumanWare
Empowering People Focused on enhancing the lives of people with visual and learning disabilities, HumanWare provide [...]
By Hugo Jean, Heptacube Inc.
Spam
2010-06-23 16:31:17

The high-profile tournament is currently being used as the subject of 4% of the world's spam emails.
The soccer/football World Cup currently going on in South Africa is being followed by hundreds of millions of people around the world. We have seen Twitter having trouble keeping up with the incredible flow of messages related to the event, but trouble more serious than an overloaded Web site is roaming, as cyber criminals take advantage of people's passion.

According to Cisco ScanSafe, 257 million spam messages related to the World Cup were sent every hour on June 11th, the first day of the competition. These accounted for four percent of the world's total spam that day. Spencer Parker, product manager at Cisco, says that "although the level of malware around the World Cup is still relatively low at this point, these early signs should act as a caution to users." Cyber criminals are using various schemes for tricking users into downloading malware, paying for streaming live matches (which is available for free) or falling for other frauds.

Paul Ducklin of security firm Sophos shared on his blog his discovery of a spam message for an advance fee fraud that uses the World Cup as an excuse for extorting money out of vulnerable people's pockets. As with most frauds of this type, a bit of common sense is enough to understand that the email is spam, but this particular one is even more laughable. Judging by the screenshot on Ducklin's blog and his explanations, it seems the email was based on a previous template where a person referred to in the email was named Johannes, and that named has been changed for Thomas. So the South African city of Johannesburg has had its name changed for Thomasburg, which does not exist! Not much credibility here.

However, some cyber criminals may be brighter than those who wrote that email, and could use the World Cup for doing more damage. It has been seen in the past, during the 1998, 2002 and 2006 World Cups, as Ducklin reminds us in another post. ZMK-J, Chick-F and Zasran-D were the malware to look for during the last three tournaments. This last one, F-Secure called it Banwarum. It was distributed as an email attachment that was presented as a way to get free tickets for the World Cup. In fact, it was a worm and probably gave people nothing more than headaches.

People are advised to be careful as usual and remember that, as Ducklin says, "if it looks wrong, it is!"





Tags
F-Secure ITPRO malware Sophos spam Twitter WorldCup2010 
Comments
Comment this post


No comment on this post.