




Outbreak Alert
Most Active New Threats
| Name | Type | Discovered |
| Trojan.Zeroaccess!g43 | Trojan | 14/05/2013 |
| Trojan.Modred | Trojan | 14/05/2013 |
| Trojan.Ransomlock.Q!g4 | Trojan | 14/05/2013 |
| Trojan.Febipos | Trojan | 13/05/2013 |
| Trojan.Ransomlock!g52 | Trojan | 12/05/2013 |
| W32.Pilleuz!gen38 | Worm | 10/05/2013 |
| W32.Phopifas!gen2 | Worm | 10/05/2013 |
| Packed.Generic.410 | Trojan | 10/05/2013 |
| Trojan.Ransomlock!g51 | Trojan | 09/05/2013 |
| W32.Changeup!gen41 | Worm | 09/05/2013 |
Internet Threat Meter

Email
LOW RISK:
Use Basic Caution
Although no widespread attacks are currently targeting web users, take normal precautions while viewing sites because of ongoing threats such as script-based attacks and phishing attacks that use fake sites.
Web Activities
LOW RISK:
Use Basic Caution
Although no widespread attacks are currently targeting web users, take normal precautions while viewing sites because of ongoing threats such as script-based attacks and phishing attacks that use fake sites.
Instant Messaging
LOW RISK:
Use Basic Caution
Currently there are no widespread outbreaks of malicious code circulating via instant messaging. In the past, however, some malicious code did take advantage of IM. Always use normal security precautions whenever you use IM.
File Sharing
LOW RISK:
Use Basic Caution
Although attackers often use this medium to distribute trojan applications and malicious code, no high-profile threats are currently affecting the medium. Always use caution when downloading files, especially from sources you don’t know or trust.
Security Response Blog
Whitewashed Spam – How Antispam Laws Are Helping Spammers
Samir_Patil @ Fri, 24 May 2013 00:11:55Contributor: Binny Kuriakose Anonymity disguised as freedom of expression and lack of clear cut laws makes ...
Downloader.Liftoh Cousin to W32.Phopifas?
Rodrigo Calvo @ Thu, 23 May 2013 22:04:25Downloader.Liftoh is a Trojan horse detected by Symantec that downloads malware onto the compromised computer without ...
Rise in URL Spam
Samir_Patil @ Thu, 23 May 2013 13:03:44Symantec is observing an increase in spam containing URLs. On May 16, URL spam volume increased ...
Phishers’ New Fake Social Media Apps
Mathew Maniyara @ Thu, 23 May 2013 07:03:47Phishers are trying everything they can to improve their chances of harvesting user credentials. They are ...
Spammers Targeting Oklahoma Tornado Victims
Anand Muralidharan @ Wed, 22 May 2013 23:35:08Natural disasters, like tornadoes and earthquakes, are quite common in the United States of America. Unfortunately, ...
Why Email is a Key to Your Castle
Candid Wueest @ Tue, 21 May 2013 21:19:28Having control over an email account can be a lot of power, even though most people ...
Twitter Feed





Threat Spotlight
Trojan.Clampi is a Trojan horse that attempts to steal login credentials related to online banking and other financially related websites. The threat is typically installed by way of drive-by download and once it compromises a computer, it downloads several modules. One of these modules is used to spread Clampi through network shares.Trojan.Clampi is able to bypass firewalls to relay the stolen information to a remote attacker and also uses a SOCKS proxy to allow the remote attacker to then login to banking and other financially related websites anonymously with the stolen credentials.
More information on Trojan.Clampi is available in the threat family writeup.
