Criminals Impersonating India's Income Tax Department to Deliver Malware: Symantec

Advertisement
By Press Trust of India | Updated: 22 January 2016 11:50 IST
Cybercriminals are targetting India, US and other countries with fraudulent "tax deduction" emails to steal information, security software firm Symantec said.

"During the last 3 months, Symantec has observed malicious emails claiming to be from India's Income Tax Department. The report shows 43 percent of these scam emails were delivered in India, followed by the US (20 percent), and the UK (14 percent)," Symantec Senior Security Response Manager Satnam Narang told PTI.

He added that there have been at least two types of emails in circulation - one that claims that thousands of rupees have been deducted from the recipient's bank account as a tax payment and the other copies the template of an actual intimation sent by the IT-Department.

Narang said the activity could grow further towards the closing of the financial year as people file their income and other taxes.

Advertisement

"While each email differs in its template, the goal is the same: to infect computers with an information-stealing Trojan that logs keystrokes. It also collects system information like titles of open windows and the operating system version that is sent back to attacker command and control server," he said.

Advertisement

The mails stating that money has been deducted contain an attached file that claim to be a receipt for the payment.

The alleged receipts are ZIP files that contain information-stealing malware that Symantec detects as Infostealer.Donx, he said.

Advertisement

On the other hand, the authentic looking mail with the Personal Account Number (PAN) (used to identify taxpayers in India) contains an attached ZIP file that is not password-protected.

"Contrary to what the email claims, the ZIP file does not contain a PDF. Instead, it contains another information-stealing Trojan that Symantec detects as Trojan.Gen," Narang said.

Advertisement

He added that the attackers spoof the domain for email addresses belonging to the Income Tax Department of India in an effort to make the emails look more convincing.

"In India, the IT-Department does send intimation emails to taxpayers. While these emails include attachments, they are password-protected using the taxpayers' PAN and date of birth/date of incorporation. This is unique to each entity and adds credibility that the source of the email is the IT Department," he said.

Narang added that one should avoid opening suspicious looking mails and report the email to Indian Computer Emergency Response Team (CERT-In).

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Xiaomi Pad 8 Launched in India With Snapdragon 8s Gen 4 SoC, 9,200mAh Battery
  2. Vivo T5x 5G Will Launch in India Next Week With These Features
  3. Poco C85x 5G Debuts With a 6,300mAh Battery at This Price in India
  4. Microsoft's Copilot Cowork Tool Can Autonomously Complete Tasks
  5. iQOO Z11 Teased With 165Hz Display, 9,020mAh Battery; China Launch Expected Soon
  6. OnePlus 15T White Colourway, Key Display Features Revealed
  7. New Leak Reveals Samsung Is Testing 12,000mAh and 18,000mAh Batteries
  1. Samsung Testing 12,000mAh, 18,000mAh Batteries With Dual Cell and Triple Cell Designs, Leaked Reports Show
  2. OnePlus 15T White Colourway, Key Display Features Revealed as Company Opens Pre-Orders in China
  3. Microsoft Could Reportedly Price Next-Gen Xbox 'Project Helix' at $1,000 or More
  4. Thailand Targets Crypto Mule Accounts Linked to Scams, Illegal Transfers as Authorities Freeze 10,000 Wallets
  5. Infinix GT 50 Pro 5G Real-Life Images Surface Online as Smartphone Arrives on BIS Database
  6. Microsoft’s New Copilot Cowork Can Take Actions and Autonomously Complete Tasks
  7. Lenovo Tab Plus Gen 2 Spotted in Leaked Renders That Point to Significant Design Overhaul
  8. Oppo Find X9 Ultra, Find X9s Reportedly Bag Thailand's NBTC Certification Ahead of Anticipated Launch
  9. Bhutan Moves Over $11 Million Worth of Bitcoin From Government Holdings, Arkham Data Shows
  10. Oppo K14x 5G Gets New 4GB RAM, 64GB Storage Variant in India: Price, Specifications
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.