Swine flu spam leveling off, but attacks continue

Share this article:
Filters are doing a better job at killing swine flu-related spam before it reaches inboxes, but that doesn't mean cybercriminals are giving up on leveraging the widely covered news story.

In the middle of the week, the amount of spam referencing the virus outbreak made up about four percent of all unwanted email, said Scott Olechowski, manager of Cisco's threat research team. However, those amounts fell Friday to roughly one percent.

"The feeling is that swine flu itself is such an easy thing for spam filters to catch," he told SCMagazineUS.com on Friday.

To keep their ploy going, some spammers have opted for targeting non-English speaking recipients, such as people living in Portugal and Japan, where they may not have controls yet in place to weed out swine flu spam, Olechowski said.

Up until recently, most of the swine spam was trying to get recipients to purchase pharmaceuticals, in some cases medications they claimed can help prevent infection, he said. But many of the current emails are trying to load malware onto users' computers by trying to get them to click on a link.

In most cases, victims are then delivered to a website that tries to persuade them to install a trojan disguised as a codec, Olechowski said. In some cases, though, users can be infected simply by visiting the malicious site if their systems are unpatched.

Security firm SonicWALL, meanwhile, said Friday that its researchers have detected a swine flu-related malware scam targeting Mexican banks.

Should the outbreak continue to make big news, spammers likely will customize their messages so they still are related to swine flu but do not actually use those specific words, Olechowski said.

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters


More in News

Email promises free pizza, ensnares victims in Asprox botnet instead

Email promises free pizza, ensnares victims in Asprox ...

Cloudmark came upon an email that offers free pizza, but clicking on the link to get the coupon ends with victims being ensnared in a botnet.

Report: most orgs lacking in response team, policies to address cyber incidents

In its Q3 threat intelligence report, Solutionary learned that 75 percent of organizations it assisted had no response team or policies and procedures to address cyber incidents.

Flash redirect campaign impacts Carnegie Mellon page, leads to Angler EK

Flash redirect campaign impacts Carnegie Mellon page, leads ...

Malwarebytes found that, since early July, thousands of sites had been targeted in the campaign.