New Trojan for Android can mount DDoS attacks

December 26, 2012

The Russian anti-virus vendor Doctor Web warns Internet users about a new malicious program for Android. TheAndroid.DDoS.1.origin can carry out DDoS-attacks on various internet resources and send short messages upon a corresponding command from criminals.

After installation, Android.DDoS.1.origin creates an application icon, similar to that of Google Play. If the user decides to use the fake icon to access Google Play, the original application will be launched, which significantly reduces the risk of any suspicion.

http://news.drweb.com/show/?i=3191&lng=en

Scammers Hijack Brands for the Holidays

While many people choose to spread good cheer during the holiday season, online gift shoppers can also count on cybercriminals spreading malware. They hope to prey on the stresses of last-minute holiday shopping and seek to distract consumers from being cautious with their personal information online. Bogus notices masquerading as email alerts from legitimate brands are one of the top malware distribution vectors making the rounds this holiday season, a new report shows.

http://www.businessnewsdaily.com/3560-fake-delivery-notifications-harbor-malware.html

Malware Attack Hides Behind Fake CNN Alerts Stating Romney Has 60% Voter Support

Whenever cybercriminals create a malware spam campaign, they often write messages that they know will tap into the emotional side of the recipient.

By doing this, they can yield the best click-through rates for any embedded links pointing to malicious websites and highest number of possible downloads for file attachments laced with malware.

And what better way is there to evoke emotion than to discuss the 2012 U.S. Presidential Election?

Therefore, consider this your fair warning to be on the lookout for fraudulent emails purporting to be from well-known news media outlets featuring eye-catching electional headlines like the one below. It could be a trap to infect your PC with malware.

http://www.hyphenet.com/blog/2012/10/11/fake-cnn-alerts-stating-romney-has-60-voter-support-paves-way-for-malware-attack/

MALWARE ALERT: New Microsoft Internet Explorer Security Hole Discovered

A new hacker attack was reportedly discovered that exploits a weakness in Microsoft’s popular Internet Explorer web browser. Users are advised to stop using Microsoft Internet Explorer (IE) immediately until a security update is released by Microsoft to address the problem. The new attack affects Internet Explorer versions 7, 8, and 9 running on Windows XP, Vista, and 7.

http://placeone.net/blog/2012/09/malware-alert-new-microsoft-internet-explorer-security-hole-discovered/

Gauss malware: Nation-state cyber-espionage banking Trojan related to Flame, Stuxnet

It can steal “access credentials for various online banking systems and payment methods” and “various kinds of data from infected Windows machines” such as “specifics of network interfaces, computer’s drives and even information about BIOS.” It can steal browser history, social network and instant messaging info and passwords, and searches for and intercepts cookies from PayPal, Citibank, MasterCard, American Express, Visa, eBay, Gmail, Hotmail, Yahoo, Facebook, Amazon and some other Middle Eastern banks. Additionally Gauss “includes an unknown, encrypted payload which is activated on certain specific system configurations.”

http://blogs.computerworld.com/security/20816/gauss-malware-nation-state-cyber-espionage-banking-trojan-related-flame-stuxnet

Trojan warning: Huge scandal with the USA Women’s Gymnastics Team

Summary: Cybercriminals are using false news about the USA Women’s Gymnastics Team at the 2012 Olympics to push malware. Despite the claims, Gabrielle Douglas, who won a Gold Medal in Women’s Gymnastics All Around, did not test positive for doping.

Scammers are pushing out malware by leveraging the hype around the 2012 Summer Olympics in London, and the potential for doping disgraces. Usually with the subject "Huge scandal with the USA Women’s Gymnastics Team on the 2012 London Olympics" this spam e-mail claims Gabrielle Douglas, who won a Gold Medal in Women’s Gymnastics All Around, faces a lifetime ban from the sport. This is not true, and the goal here is to infect your computer with malware.

http://www.zdnet.com/trojan-warning-huge-scandal-with-the-usa-womens-gymnastics-team-7000002135/