Simple clear advice in plain English

Sophos warns fake Adobe upgrade contains Zeus Trojan

Attached ZIP file in emails could con people into downloading banking Trojan

malware
The Zeus Trojan is masquerading as fake Adobe updates

Emails purporting to come from Adobe and offering updates for the company's software are fooling people into downloading the Zeus banking Trojan.

Security company Sophos said that the fake upgrades for Adobe Acrobat Reader and Adobe X Suite Advanced are actually an attached ZIP file that downloads a version of the malware, which has been hugely successful in stealing banking information allowing cyber criminals to drain people's accounts.

Graham Cluley, Sophos' senior technology consultant said: "Computer users need to learn that Adobe never sends out software updates as email attachments, and any legitimate upgrades should always be downloaded from Adobe's own website.

"It's trivial for a malicious hacker to forge an email header to trick the unwary into believing an email has been sent from someone else - so just because it claims to be from Adobe, doesn't mean that it was sent by them."

Sophos warned that each email is slightly different, incorporating different reference numbers in the subject line, attached filename and message body.

A cursory look at the message in one of the spam emails that Sophos has posted online shows the usual dodgy wording, especially the greeting:

Hello Dear,

Adobe is pleased to announce new version upgrades for Adobe Acrobat Reader and Adobe X Suite Advanced features include:

- Collaborate across borders
- Create rich, polished PDF files from any application that prints
- Ensure visual fidelity
- Encrypt and share PDF files more securely
- Use the standard for document archival and exchange

To upgrade and enhance your work productivity today please open attached file.

Cluley added: "Hopefully people are beginning to understand the importance of keeping all software patched and up-to-date, not just your security software.

"However, the risk is that less technical-savvy computer users might believe this email is genuine, and be tricked into installing malware onto their computer thinking that it is an official Adobe update."

Article tags

Reader Comments

adobe updates

we know all that we are not stupid its all old hat isnt it

Posted by peasy, 12 Mar 2012

   

Add your comment

Please keep comments constructive and free from abuse of any kind and swearing. If you wish to link to a product or service online, please do so in such a way that makes it clear that it is not spam. If you are connected to any such product you should make that clear.

We may use your comments in the magazine. We may edit your comments for clarity or to remove unacceptable material. We will attribute your comments but not share your email address.

We request your email address and record your Internet Address (IP address) in order to block spam from our site. We will never share this information without your permission.

All comments are reviewed by the Computeractive Team before being published. Please bear with the slight delay this causes, you don't need to post more than once.

Click here to read our Privacy Policy

Click here to read our site Terms & Conditions

Related articles

Stuxnet and Zeus Trojan top list of online threats

Report into online security also highlights potential threat to smartphones

More arrests in Zeus botnet sting

More gang members rounded up by police in US, UK and Ukraine

New body tackles crime

Content Recommendation

Question & Answer

Q.Why is Windows Backup skipping files?

> Read the answer

Q.Why do my scanned documents display gibberish?

> Read the answer

Q.How can I convert MTS files to edit in Windows Movie...

> Read the answer

Best deals on the web

img

Samsung NP350E7C-A04UK

£349.99- Buy it now

img

Toshiba Satellite C850D-11Q (PSCC2E-00R00JEN)

£279.97- Buy it now

img

ASUS Eee PC X101CH-BLK043S

£239.99- Buy it now

Updating your subscription status Loading

Most popular articles

No matching document

Poll

Do you have Windows 8?

Jargon Buster

Computing terms explained in plain English

VGA

Video Graphics Array. Standard socket for connecting a monitor to a computer.

Great shopping deals from Computeractive

Information currently unavailable