Computing in the real world
SEARCH FOR: IN:
      
Welcome Guest  Register Log in

News 

[PSUs]
Tuesday 14th October 2003
VIRUS: Spybot-R targets file-sharers 5:11PM, Tuesday 14th October 2003
Sophos has warned of a worm that has been discovered infecting machines using peer-to-peer networks.

Spybot-R uses the KaZaA peer-to-peer file-sharing network to spread by masquerading as key-generating programs for popular games and software applications.

If a user downloads one of these files off the network, when run, it will display a fake error message and create a folder into which it places copies of itself, again using filenames such as Windows XP Professional Keygen by CaFo.exe.

It also makes a number of Registry edits to ensure that the files are shared and that the worm runs itself each time the computer is restarted.

Spybot-R also opens a back door to an infected machine through IRC channels, whereby an attacker could gain remote control of the computer. It also contains key-logging capabilities that could record your passwords and credit card details when typed.

Spybot-R has aliases Spybot.Worm and Worm.P2P.SpyBot.gen.

Submit to: Digg  |  Slashdot  |  Del.icio.us  |  Technorati

Related News



Top 10 Broadband

150+ broadband packages

Compare 30+ mobile broadband deals

Powered by Top 10 Broadband


Columns

Prolog:

After eight years in a caring relationship, Tim Danton is falling for a desktop once again. › See full Opinion