Press Releases

Browse our press release archive

26 Jan 2004

Dumaru worm poses as photo but steals online banking details. Sophos comments

Users should be wary of clicking on unsolicited attachments
Users should be wary of clicking on unsolicited attachments

Sophos technical support has advised customers about a new worm which poses as an emailed photograph, whilst really attempting to steal online banking details in the background.

The W32/Dumaru-Y worm arrives in an email with the following characteristics:

From:"Elene" FUCKENSUICIDE@HOTMAIL.COM
Subject:Important message for you. Read it immediately !
Message body:

Hi!
Here is my photo, that you asked for yesterday

Attached file:myphoto.zip

If the file inside the attached zip file is launched the worm will be activated, capturing keystrokes during online banking sessions which could include passwords and financial account information.

The Dumaru-Y worm contains its SMTP engine and attempts to collect email addresses to send itself to by searching the user's hard drive.

"All computer users should think carefully before opening an unsolicited email attachment as it may be a malicious attempt to drain your bank account," said Graham Cluley, senior technology consultant for Sophos. "Users should ensure their anti-virus is automatically updated, and ask their ISP or employer to block unwanted executable code before it reaches the desktop."

Sophos's email protection solutions provide an effective way to prevent unwanted viruses and spam arriving via email.

About Sophos

More than 100 million users in 150 countries rely on Sophos as the best protection against complex threats and data loss. Sophos is committed to providing security and data protection solutions that are simple to manage, deploy and use and that deliver the industry's lowest total cost of ownership. Sophos offers award-winning encryption, endpoint security, web, email, and network access control solutions backed by SophosLabs - a global network of threat intelligence centers. With more than two decades of experience, Sophos is regarded as a leader in security and data protection by top analyst firms and has received many industry awards.

Sophos is headquartered in Boston, US and Oxford, UK. More information is available at www.sophos.com.