Hackers slug Aussies with trojans in ATO, air ticket spam

There has been a surge in spam over the past week containing a trojan that mysteriously targets Australians and connects to servers in Russia and Poland if installed, according to Symantec.

“The attackers behind this malicious spam campaign appear to have no specific target in mind other than compromising a large base in Australia for reasons still unknown,” the security vendor warned on Wednesday.

Spam in two flavours are delivering the same malware concealed in two different .zip attachment files: one purportedly from an airline -- which appears by the colours to be Jetstar; another claimed to be from Australian Taxation Office.

The ATO spam’s subject field is titled “Tax Agent Report - Delayed Tax Returns” and contains a “Tax Report.zip” attachment. The zip contains a malicious executable TaxReport.xls.exe.

The subject field “Check-In Details” heads the airline spam, which carries a zip that contains a malware file labeled “check-in details.pdf.exe”.

The malware, which is designed to download additional malware, connects to command servers located in Poland and Russia, according to Symantec.

Symantec advised to be cautious when opening email attachments.

Follow @CSO_Australia and sign up to the CSO Australia newsletter.

Join the newsletter!


Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.
Follow our new CSO Australia LinkedIn
Follow our new social and we'll keep you in the loop for exclusive events and all things security!
Have an opinion on security? Want to have your articles published on CSO? Please contact CSO Content Manager for our guidelines.

Tags malwaresymantectrojan

More about Australian Taxation OfficeCSOSymantec

Show Comments

Featured Whitepapers

Editor's Recommendations

Brand Page

Stories by Liam Tung

Latest Videos

More videos

Blog Posts