Another Storm Worm Varriant

By cuinfosec

If you have not noticed lately, the Storm Worm is in an ever changing email attempting to infect users.

The Basics of Storm Worm – an email gets sent out to ??? number of users with a link to a web server that attempts to compromise a users system. In the beginning it masked itself as a greeting card email, then it was a registration confirmation email.

Now it has taken a turn that I feel will be able to fool many users into clicking on it. The email hides the know Storm IP link with a youtube link. With the use of this site being so big, I am pretty sure that the botnet size will grow even bigger. The current size of the BotNet is different based upon the article read, but you can be assured that it is large and will continue to grow. One estimate has it at 250 K to 1 Million while another has it 5 to 10 million machines.

In case you are interested here are some sample subject lines and email body text. I have removed links of course.

Subject Lines

  • LOL, dude what are you doing
  • LOL, that is too cool…..
  • oh man your nutz
  • Where did you take that?
  • ROTFLMAO, who is that your …
  • I cant belive you did this

And for the body.

  • What are you thinking…if pat sees this your divorced dude. :-{) check it out yourself
  • this i not good. If this video gets to her husband your both dead. this is the link to it.
  • You can see your face right in the video. its all over the web dude. take a look, lol…
  • this i not good. If this video gets to her husband your both dead. go look at it…
  • this i not good. If this video gets to her husband your both dead. check it out yourself
  • What are you thinking…if pat sees this your divorced dude. :-{) see for yourself…

Leave a Reply