The bogus website claims to be a free fix for a spyware; users who accept the offer unsuspectingly download the malicious Trojan.
Unlike infectious malicious programs such as viruses, such Trojan horse codes do not propagate by self-replication but instead rely on the exploitation of an end-user.
IronPort's latest discovery reflects the prevalence of malevolent social engineering throughout the internet, where trickery is used to gather information or gain access to computer systems via the web.
'It was fortunate that we were able to identify this threat and thus immediately warn users of this latest attack against the internet; however, we are concerned that the Trojan escaped detection from major security platforms. This shows how even the best-protected computer systems remain susceptible to infiltration, especially via social engineering; we thus advise internet users to be wary of suspicious offers and communications and make sure that they have reliable network security solutions in place,'
said Ray Kafity, Regional Sales Manager - Middle East, North Africa and Pakistan, IronPort Systems.
The latest outbreak was detected using IronPort's S-Series Web Reputation Filters, which are integrated into the S-Series of family of web security appliances.
Considered the industry's fastest web security appliances, the S-Series combines a high-performance security platform with IronPort's exclusive Web Reputation technology and its Dynamic Vectoring and Streaming engine, a new scanning technology that supportssignature-based spyware filtering.
The S-Series also uses IronPort's SenderBase anti-spam reputation management technology, which determines the parts of a web page that are secure enough to go through browsers.
IronPort, a business unit of leading global network solutions provider Cisco Systems' Security Technology Group, was recognized as one of the world's leading messaging security appliance vendors in terms of revenue and market share by International Data Corp. in December 2007.
The company maintains the renowned SenderBase Network, the world's first and largest email and web traffic monitoring system.
The SenderBase Network collects data from more than 100,000 organisations around the world, measures more than 110 various parameters for any email server, and processes more than 5 billion queries daily.
The Network currently monitors more than 25% of global messaging traffic; it blocks up to 80% of spam at the connection level and enhances malware catch rates by more than 20% over signature-based scanning alone.
SenderBase and other IronPort products and solutions are continuously enhanced through partnerships with prominent IT companies such as Dell, McAfee, and Oracle.
Browse related articles
Posted by Eman Hassan


Web Feeds