




Outbreak Alert
Most Active New Threats
| Name | Type | Discovered |
| Trojan.Zeroaccess!g43 | Trojan | 14/05/2013 |
| Trojan.Modred | Trojan | 14/05/2013 |
| Trojan.Ransomlock.Q!g4 | Trojan | 14/05/2013 |
| Trojan.Febipos | Trojan | 13/05/2013 |
| Trojan.Ransomlock!g52 | Trojan | 12/05/2013 |
| W32.Pilleuz!gen38 | Worm | 10/05/2013 |
| W32.Phopifas!gen2 | Worm | 10/05/2013 |
| Packed.Generic.410 | Trojan | 10/05/2013 |
| Trojan.Ransomlock!g51 | Trojan | 09/05/2013 |
| W32.Changeup!gen41 | Worm | 09/05/2013 |
Internet Threat Meter

Email
LOW RISK:
Use Basic Caution
Although no widespread attacks are currently targeting web users, take normal precautions while viewing sites because of ongoing threats such as script-based attacks and phishing attacks that use fake sites.
Web Activities
LOW RISK:
Use Basic Caution
Although no widespread attacks are currently targeting web users, take normal precautions while viewing sites because of ongoing threats such as script-based attacks and phishing attacks that use fake sites.
Instant Messaging
LOW RISK:
Use Basic Caution
Currently there are no widespread outbreaks of malicious code circulating via instant messaging. In the past, however, some malicious code did take advantage of IM. Always use normal security precautions whenever you use IM.
File Sharing
LOW RISK:
Use Basic Caution
Although attackers often use this medium to distribute trojan applications and malicious code, no high-profile threats are currently affecting the medium. Always use caution when downloading files, especially from sources you don’t know or trust.
Security Response Blog
Phishers’ New Fake Social Media Apps
Mathew Maniyara @ Thu, 23 May 2013 07:03:47Phishers are trying everything they can to improve their chances of harvesting user credentials. They are ...
Spammers Targeting Oklahoma Tornado Victims
Anand Muralidharan @ Wed, 22 May 2013 23:35:08Natural disasters, like tornadoes and earthquakes, are quite common in the United States of America. Unfortunately, ...
Why Email is a Key to Your Castle
Candid Wueest @ Tue, 21 May 2013 21:19:28Having control over an email account can be a lot of power, even though most people ...
Spammers Make Memorial Day Memorable
Anand Muralidharan @ Mon, 20 May 2013 20:02:16Memorial Day is celebrated on May 27 and it is a day for memorializing the men ...
Operation Hangover: Q&A on Attacks
Symantec Security Response @ Mon, 20 May 2013 14:39:02Today Norman and the Shadowserver Foundation released a joint detailed report dubbed Operation Hangover, which relates ...
Symantec Protection for Trojan.FakeSafe
Symantec Security Response @ Fri, 17 May 2013 12:30:57Today, Trend Micro published a report about a targeted attack campaign they’re calling SafeNet (the campaign’s ...
Twitter Feed





Threat Spotlight
Trojan.Clampi is a Trojan horse that attempts to steal login credentials related to online banking and other financially related websites. The threat is typically installed by way of drive-by download and once it compromises a computer, it downloads several modules. One of these modules is used to spread Clampi through network shares.Trojan.Clampi is able to bypass firewalls to relay the stolen information to a remote attacker and also uses a SOCKS proxy to allow the remote attacker to then login to banking and other financially related websites anonymously with the stolen credentials.
More information on Trojan.Clampi is available in the threat family writeup.
