IE 11 Not Supported

For optimal browsing, we recommend Chrome, Firefox or Safari browsers.

Warning of Dangerous Trojan Cimuz.EL

"It is essential not to run any file that arrives from unreliable sources."

As much as 57 percent of the malware in circulation reports received by PandaLabs in the last few hours have concerned Cimuz.EL. This malicious code reaches computers in stages. A computer is infected with a part of the code that operates as a downloader. This then downloads the rest of the Trojan's components, which in turn are responsible for the malicious actions.

Once completely installed on a system, Cimuz.EL steals and stores data about the affected computer: e-mail and other programs' passwords, hardware and software data, IP, location, etc.

This Trojan is also designed to monitor users' Internet activity. It does this by injecting a DLL in Internet Explorer. In this way, it manages to capture all the data that users enter in online forms (credit card numbers, passwords, etc.). All this information is then sent periodically to the malware creator through a server.

"The characteristics of this malware and the speed with which it is spreading make this one of the most dangerous members of the Cimuz family," explains Luis Corrons, technical director of PandaLabs. "Its ability to steal all signs of information, regardless of whether it is useful or not, highlights the interest of cyber-crooks to exploit every infection in order to gather as much data as possible.

"This Trojan cannot spread by itself, but uses numerous other channels to propagate: Internet downloads, CDs, infected memory sticks, e-mail, etc. For this reason it is essential not to run any file that arrives from unreliable sources," warns Corrons.

Sign up for GovTech Today

Delivered daily to your inbox to stay on top of the latest state & local government technology trends.