Michael Jackson spam virus screenshot. Credit: UAB.
A Cyber criminals who are exploiting public interest in his death with spam messages that infect computers with a virus able to steal bank account numbers and passwords, according to Gary Warner, University of Alabama at Birmingham (UAB) director of research in computer forensics. Warner and the other researchers at the UAB Spam Data Mine began tracking the celebrity-focused spam early on Tuesday, June 30.
This virus been tracking the cyber criminals behind this spam and the associated virus for many weeks, but it is just today that they have shifted their strategy by embedding their virus into an e-mail that claims to link you to a Web site that will reveal Michael Jackson’s killer.
The spam related to this virus has taken many forms, including e-cards, shipment tracking links and, most recently, a fake update to Microsoft Outlook, but with the high interest in Michael Jackson’s death the cyber criminals decided to change their delivery method to capitalize on that
Google also, has confirmed that the surge of Michael Jackson-related searches on Google News Thursday was first interpreted as an attack on its service.
Google News was inaccessible for some people Thursday afternoon right as rumors of Jackson's death began to circulate, replaced by an error message reading "We're sorry, but your query looks similar to automated requests from a computer virus or spyware application. To protect our users, we can't process your request right now."
Of course, those queries were quite legitimate, as millions around the world searched for accurate information regarding Jackson following reports that he had suffered cardiac arrest. The spike in queries began at about 2:45 p.m. PDT Thursday, and Google thought the traffic was an attack for about 25 minutes before realizing what was going on.
Google also noted that it saw a huge spike in mobile searches. Yahoo's data backed up Google's; it set a record for unique visitors in a single day with 16.4 million visitors, and its lead story on Jackson's death was the most highly-visited story in its history.
A mass-mailing worm is using Jackson's death as bait, computer security company Symantec has discovered.
The worm sends out spam emails with the subject "Remembering Michael Jackson" and an attachment named "Michael songs and pictures.zip."
The .zip file contains another file called "MichaelJacksonsongsandpictures.doc.exe" which is a copy of the worm.
When opened, the worm automatically downloads onto the user's machine, then spreads through its email program and also onto removable drives such as USB sticks.
For people looking for news, videos, pictures or any information regarding Michael Jackson and his life, Symantec recommends that they only visit sites they are familiar with and trust," Symantec Australia and New Zealand managing director Craig Scroggie said.
"Also, don't click on every link related to this story and make sure that your security solutions are up-to-date........
More intechclan...
Summary only...

Malware is the collective term to describe malicious programs, incuding viruses, trojans, spyware, adware,rootkits, nerbots, backdoors, keyloogers, fraudulent dialers, the list is endless. Some of the other threats include phising and pharming.
VIRUS: It is a program that can replicate itself and affect normal operation of a computer without the permission or knowledge of the user.
POLMORPHiC VIRUS: This type of a virus keeps changing its signature every time it replicates and infects a new file.
WORM: Unlike a virus, a worm is a program that is capable of replicating and spreading to various other systems without the need of a host file.
TROJAN: It is a program that contains or installs a malicious program though it appears to be a genuine one.
SPYWARE: Such type of software collects personal information about the users without their informed consent.
ADWARE: These software are capable of playing, displaying, or downloading advertising material automatically to a computer after it is installed on it.
BACKDOOR: It is a program that can bypass normal authentication to gain remote access to a computer and remain hidden from cursory inspection.
BOTNET: It is a network of computers controlled by a Bot developer.
ROOTKIT: These software tools hide some malicious running processes, files or system data from the operating system.
KEY-LOGGER: It is a program that is used to capture the user's keystrokes.
FRAUDULENT DIALERS: It is a program that that installs a malicious program.
PHISHING: It is a fake website appearing to be a genuine one in orderto extract personal details from users.
PHARMING: Pharming is aimed to redirect website's traffic to another phoney website.
More intechclan...
Summary only...

Most viruses are written with a malicious intent, so that they can cause damage to programs and data in addition to spreading themselves. Viruses infect existing programs to alter the behavior of programs, actively destroy data, and perform actions on storage devices that render their stored data inaccessible.
Computer viruses attack the software of a computer such as operating systems, data files, application software, and e-mails. However, viruses do not affect the computer hardware.
Viruses infect computers and spread themselves using various methods. Some viruses attach themselves to a common program such as a popular game or word processor. When a person downloads the infected game and runs it, the attached virus program gets executed. The virus then loads itself into memory and searches for any other program on the disk. If the virus finds any program, it modifies the program by adding the malicious code to the program. The next time this program gets executed, it infects other programs, and the cycle continues thereafter.
There are many types of computer viruses such as a boot-sector virus, macro virus, e-mail virus, etc.
A boot-sector virus infects the boot record on hard disks and floppy disks, which is used to start the computer. When the computer is turned on or restarted, the virus is automatically executed. An infected boot disk may stop the computer from starting up.
A macro virus is a macro or script that attaches itself to a file or template. When the file is loaded, the instructions of the macro or script are executed.
An e-mail virus moves around in e-mail messages, and usually replicates itself by automatically mailing itself to many people in the their e-mail address book.
Some other types of programs are also harmful to computers, which are not viruses such as a Trojan horse.
The main difference between a virus and a Trojan horse program is that a Trojan horse program does not replicate itself. A Trojan horse only destroys information on the hard disk. A Trojan horse program disguises itself as a legitimate program such as a game or utility. It often looks and initially acts in the same way as a legitimate program, but when it is executed, it destroys or corrupts data. A Trojan horse program can contain viruses, but it is not a virus itself.
A Worm uses computer networks and security holes to replicate itself. A Worm scans the network for another computer that has a specific security hole. It copies itself to the new computer using the security hole, and then starts replicating from there as well. A virus can have both virus and worm characteristics.
There are several anti-virus software that can detect, identify, and remove these viruses. As a precaution against viruses, we should take the following actions:
An anti-virus software that can detect, identify, and remove viruses should be installed on the computer.
All information downloaded from the Internet or some unknown resource must be immediately scanned for viruses by using an anti-virus software. Any e-mail attachment that comes from unknown sources should never be opened.
More intechclan...
Summary only...

Did you received suspicious email with the attachments such as bill from Amazon or eBay. Do you know the attachments files like this are very dangerous. Many online attacks are beginning to employ such tactics. The similarities of such attacks donate from the executable downloader which arrive in mail attachment such as “Zip” or “PDF” file.
A Double click on the does not run Winzip or Adobe reader, but executes a downloading process. This is how possible malware such as Trojans, Worms or Spyware sneaks into the PC.
Normally the anti-virus should have sounded the alarm, but the problem is that downloading a supposedly harmless file will not trigger anything. Its not damage the computer while modifying system files. It only does what is command to download the file from the internet.
The Anti-virus company, at present finding difficult to develop a solution. This because what the downloader downloads is basically yet another slightly modified downloader. The most insidious part about this is that even if the antivirus can be hard coded to ban a specific downloader, it will not recognized the second, third and following programs as they all unique.
When the downloader goes into action, disaster will start to unfold. Your are lucky if, it will only download spyware to your computer. But it more dangerous, if it install the botnet software to your computer. Your computer wrongly to gain unauthorized control by the hackers. The hackers then uses this computer as a distributor machine to spamming and may even resend that malicious email to your address book contacts.
Now the antivirus companies are working hard at finding the solutions. The Symantec, suggested the firewall of good security suites to block the downloader. However, it may not be able to capture all of them. Trend Micro is dealing with the issue by blacklisting popular websites which host malware. But the basic rules to dealing with this issue are “Please, never to open file attachments of suspicious mails….”
More intechclan...
Summary only...