G Hunt - Page 10

Sophisticated Careto Virus Discovered – Attackers infect via Phishing.

Tampa, FL and Galway, Ireland – 19th Feb  2014. The weather is almost too warm in Sochi for the Olympics.  One needs adequate packed powder snow to ski, or at least to ski safely—instead, in Sochi, they have ice, plus clouds.  Clouds make it difficult to see where you are going: when the sky and the ground are the same colour, you cannot distinguish heaven from earth.  It is easy to get disoriented and suffer the sensation of not knowing whether you are skiing across the snow or floating above it.

But in Moscow, there is plenty of snow.  There at Kaspersky (which is one of the anti virus solutions included with SpamTitan anti spam), security researchers and antivirus software developers are hunkered down in the double-paned-windowed-warmth of a Moscow winter, working long hours to find, expose, and the contain computer viruses.   

What they found this week was Careto.  This virus was lurking in the same place as a related virus found a few years ago. Kaspersky published a detailed forensic report to explain what they found. Some of this forensics you could have done yourself; other is much more complex.  For example, they use the Linux program “strings” to extract text from the executable file.  There they found comments and instructions that the programmer had written in Spanish, plus the name of the virus itself: Careto.

Servers used by attackers revealed 380+ victims from 31 countries. 

Kaspersky says this Spanish word means “ugly face” or “mask”.  According to Kaspersky ‘What makes The Mask special is the complexity of the toolset used by the attackers. This includes an extremely sophisticated malware, a rootkit, a bootkit, Mac OS X and Linux versions and possibly versions for Android and iOS (iPad/iPhone)’. It’s believed that some foreign government paid to develop the virus, because it works on so many systems, suggesting a large team and much effort.  Data found by investigating and monitoring a set of command-and-control (C&C) servers used by the attackers revealed more than 380 unique victims from 31 countries. The main targets were government organisations including embassies, energy, oil and gas companies, research institutions, and activist’s and private equity firms.

Careto spreads using phishing. If you clicked on a mail containing their malicious link, you would have been sent to mock-up copies of El Pais, The Washington Post, El Especatdor, El Mundo, and Publico newpapers.  The actual link is hidden.  It says, for example: elpais.linkconf(dot)net.  Careto infected some computers by exploiting a weakness in the 2012 version of Adobe Flash (Flash is used to display video in certain web pages.). The other attack was made by hiding an executable program in an otherwise harmless .jpeg picture file.  The names are: dinner.jpg, waiter.jpg, and chef.jpg.  

For victims a Catero malware infection spells disaster.

The virus intercepts all communication channels and collects information from the victim’s machine. Once installed, the virus steals encryption keys, records Skype calls, transcribes what you type, and listens in on data coming to and from your device. It then sends these stolen passwords, email addresses, and bank account numbers, and other secrets to a set of command and control servers, controlled by the hackers.  One of these was found running inside a SoftLayer data centre, a cloud-service provider.

Detection is difficult because of stealth rootkit capabilities, built-in functionalities and additional cyber-espionage modules. Having made their discovery, Kaspersky was able to follow the virus’s forensic clues to show what computers were affected and provide lots of details about where the virus came from.  Kaspersky Lab’s products detects and removes all known versions of The Mask/Careto malware so you are safe from Careto when using SpamTitan anti spam.  

SpamTitan anti spam for business wins 26th Virus Bulletin award easily

Galway, Ireland and Tampa, FL – February 6th 2014. The powerful email security solution SpamTitan continues to get top anti spam detection rates and excellent performance in the latest Virus Bulletin Test which took place in January 2014. SpamTitan hasn’t missed a Virus Bulletin comparative since 2009, and has maintained an impressive spam catch rate, false positive rate as well as keeping the VB team happy with good design and reliable performances.

According to Virus Bulletin test director Martin Grooten ‘with a spam catch rate of 99.73%, SpamTitan performs very well out of the box. A 26th consecutive VBSpam award is something to be proud of’. This time 18 full solutions were tested and this was the first time the new SpamTitan 6.00 version of the virtual appliance was tested. Read more about SpamTitan’s recent awards.

 

SpamTitan awarded VBSpam+ award in November industry test outperforming McAfee, Sophos, GFI and Symantec.

Tampa FL and Galway, Ireland – Dec 5th 2013.  This month SpamTitan was awarded its 3rdVBspam+ award with an impressive spam catch rate and 0% false positive rate. According to Martijn Grooten, author of the Virus Bulletin anti-spam comparative review, SpamTitan was awarded a special VBSpam+ award for ‘a very impressive 99.75% of spam  blocked’ combined with  the fact that ‘the virtual appliance didn’t block a single legitimate email’ . This is SpamTitan’s 3rd VBspam+ award and 24th consecutive Virus Bulletin award since joining the Virus Bulletin test group.

According to SpamTitan Technologies CEO, Ronan Kavanagh ‘The Virus Bulletin tests set strict criteria that security solutions must  meet before receiving an award. Thanks to its tight control and regularity it provides a unique overview of how robust and effective a solution is over time. We are delighted SpamTitan anti spam consistently achieves high marks. The November VBspam+ award is now the 24thconsecutive award for SpamTitan thanks to the continuous hard work of the SpamTitan developers.  READ MORE 

SpamTitan Technologies, now TitanHQ, announces distribution partnership with ADMTOOLS in Spain.

Tampa FL and Galway, Ireland – Oct 1st 2013.  SpamTitan Technologies today announced that it has signed a distribution agreement with ADMTOOLS in Spain. ADM Tools is a leader in technology distribution and channel services delivering business security solutions across through their reseller network in Spain. The agreement is the first direct distribution agreement for SpamTitan Technologies in Spain and forms part of the company’s strategy to focus on growing and investing in its partner network.

This new partnership will greatly benefit SpamTitan’s Spanish resellers and customers and enable greater access to SpamTitan’s leading security solutions with the support of ADMTOOLS local channel services. According to Marcial Gonzalez, Channel Manager Iberia of SpamTitan, ‘The company has partnered with ADMTOOLS because of its experience as a security distributor, its detailed knowledge of the local security market, as well as its success and recent major growth”.

ADM Tools will distribute the complete range of SpamTitan Technologies solutions including SpamTitan spam filter and the WebTitan content filtering solution. All  solutions are available in various  deployment options including on premises, virtual and cloud.  Víctor Orive, Global Sales & Marketing Manager at ADMTOOLS said “We are very excited about this new agreement with SpamTitan Technologies. We firmly believe that our partners will benefit from this refreshing new opportunity to offer superior solutions like SpamTitan anti-spam and WebTitan for web security to their customers at a very competitive price.

About ADMTools

VAD ADMTOOLS is a leader in solutions for IT management, servers and networks, in various areas such as content security, systems management and messaging solutions. ADMTOOLS is a company focused entirely to the distribution channel, offering the most advanced technological solutions of the global market for information technology.

ADMTOOLS markets its products exclusively through a network of distributors. ADMTOOLS is based in Burgos, Spain. For further information email: comercial@admtools.com

SpamTitan Technologies launches powerful spam filtering service for SMBs

Tampa, FL and Galway, Ireland – 9th July 2013 – SpamTitan Technologies, a division of Copperfasten Technologies, today announced the launch ofthe SpamTitan Cloud service, powerful cloud based email filtering that protects your business and email users from Spam, Viruses and other Malware. The new SpamTitan Cloud service gives companies all the benefits of the multi-award-winning SpamTitan solution, without the high costs associated with deploying and managing local or virtual resources. With SpamTitan Cloud small- to medium-sized businesses receive unbeatable spam protection, improved network performance, and fail-safe reliability in an affordable package.

”Uptake of cloud computing is set to increase further in 2013 with cost savings and flexibility being the key motivators,” said SpamTitan Technologies CEO Ronan Kavanagh. “Today’s announcement marks the next generation deployment phase for the SpamTitan suite of email security solutions offering even more flexibility to our customers as well as increased efficiency, affordability and ease of use. We have always been innovative in our offerings – this takes that innovation to the next level.”

By using the SpamTitan Cloud service SMBs can configure SpamTitan to their exact requirements and be ready to block spam in minutes. Requiring no on-premises software or end user client software, set up is extraordinarily simple and quick. After account setup and MX record redirection to SpamTitan Cloud servers, email is automatically cleaned of 99.98% of spam, before any optional configuration changes.

Hosted e-mail services hold several advantages over their in-house counterparts but there are drawbacks as well. Each organisation needs to examine their individual requirement and circumstances before deciding on the best option. At SpamTitan Technologies we offer a full range of email security solutions including an appliance for in-house deployment as well as the cloud based service – both offering the same core functionality.

Appliance versus services
One advantage of using a service like SpamTitan Cloud is that the volume of mail coming to your internal network is greatly reduced – by 80 to 90 percent in most cases. SpamTitan Clouds robust clustered network infrastructure significantly lowers the risk that your e-mail service will fail.

SpamTitan Cloud also offers a buffer for your e-mail system. If your internal e-mail server fails or your Internet connection goes down, your email will accumulate on SpamTitan Cloud until your in-house problem is resolved. SpamTitan Cloud offers all the enterprise level features you find in the SpamTitan appliance options, such as unbeatable spam blocking  of 99.98%+, double anti-virus protection, LDAP, Dynamic and aliases file recipient verification as well as SASL authentication and much more.

A fully featured free 14-day trial of of SpamTitan Cloud can be accessed from the SpamTitan website and used immediately to block spam, viruses and other email threats. Prices start at $450 for 50 users for 1 year, with no additional costs. Read more about SpamTitan Cloud.