±Recent Visitors

Recent Visitors to Com-Central!

±User Info-big


Welcome Anonymous

Nickname
Password

Membership:
Latest: cgsimpson
New Today: 0
New Yesterday: 0
Overall: 6645

People Online:
Members: 0
Visitors: 341
Total: 341
Who Is Where:
 Visitors:
01: Community Forums
02: Community Forums
03: Community Forums
04: Community Forums
05: Community Forums
06: Photo Gallery
07: Community Forums
08: Community Forums
09: Downloads
10: Community Forums
11: Photo Gallery
12: Community Forums
13: Community Forums
14: Community Forums
15: Community Forums
16: Community Forums
17: Home
18: Home
19: Community Forums
20: Photo Gallery
21: Community Forums
22: Community Forums
23: Photo Gallery
24: Downloads
25: Photo Gallery
26: Community Forums
27: Community Forums
28: Community Forums
29: Community Forums
30: Statistics
31: Community Forums
32: Community Forums
33: Community Forums
34: CPGlang
35: Photo Gallery
36: Community Forums
37: Community Forums
38: Community Forums
39: Community Forums
40: Home
41: CPGlang
42: Community Forums
43: News Archive
44: Community Forums
45: Community Forums
46: Community Forums
47: Community Forums
48: Community Forums
49: Community Forums
50: Community Forums
51: CPGlang
52: Photo Gallery
53: Downloads
54: Photo Gallery
55: Member Screenshots
56: Community Forums
57: Community Forums
58: Community Forums
59: Community Forums
60: Community Forums
61: Community Forums
62: Photo Gallery
63: Home
64: Community Forums
65: Community Forums
66: Home
67: Community Forums
68: Community Forums
69: Community Forums
70: Community Forums
71: Home
72: Home
73: Community Forums
74: Community Forums
75: Community Forums
76: Community Forums
77: Community Forums
78: Community Forums
79: News Archive
80: Community Forums
81: Photo Gallery
82: Community Forums
83: Your Account
84: Community Forums
85: Member Screenshots
86: Community Forums
87: Community Forums
88: Photo Gallery
89: Community Forums
90: Community Forums
91: Community Forums
92: Community Forums
93: Photo Gallery
94: Community Forums
95: Community Forums
96: Community Forums
97: Community Forums
98: Photo Gallery
99: Community Forums
100: Community Forums
101: Member Screenshots
102: Home
103: Home
104: Community Forums
105: Community Forums
106: Community Forums
107: News
108: Community Forums
109: Community Forums
110: Community Forums
111: Your Account
112: Member Screenshots
113: Community Forums
114: Photo Gallery
115: Photo Gallery
116: Photo Gallery
117: Photo Gallery
118: Community Forums
119: Community Forums
120: Community Forums
121: Photo Gallery
122: Downloads
123: Community Forums
124: Community Forums
125: Community Forums
126: Photo Gallery
127: Home
128: Community Forums
129: Community Forums
130: Photo Gallery
131: Downloads
132: Home
133: Community Forums
134: Community Forums
135: Home
136: Community Forums
137: Community Forums
138: Community Forums
139: Community Forums
140: Community Forums
141: Community Forums
142: Home
143: Community Forums
144: Community Forums
145: Community Forums
146: Photo Gallery
147: Community Forums
148: Downloads
149: Community Forums
150: Community Forums
151: Community Forums
152: Community Forums
153: Community Forums
154: Community Forums
155: Community Forums
156: Community Forums
157: Community Forums
158: Community Forums
159: Home
160: Community Forums
161: Community Forums
162: Community Forums
163: Home
164: Community Forums
165: Community Forums
166: Community Forums
167: Photo Gallery
168: Community Forums
169: Your Account
170: Community Forums
171: Photo Gallery
172: Community Forums
173: Community Forums
174: Community Forums
175: Community Forums
176: Home
177: Community Forums
178: Home
179: Photo Gallery
180: CPGlang
181: Home
182: Community Forums
183: Community Forums
184: Photo Gallery
185: Community Forums
186: Community Forums
187: Community Forums
188: Community Forums
189: Home
190: Photo Gallery
191: Community Forums
192: Member Screenshots
193: Community Forums
194: Home
195: Community Forums
196: Community Forums
197: Community Forums
198: Community Forums
199: Community Forums
200: Community Forums
201: Home
202: Home
203: Community Forums
204: Community Forums
205: Community Forums
206: Home
207: Community Forums
208: Community Forums
209: Home
210: Community Forums
211: News Archive
212: Community Forums
213: Community Forums
214: Community Forums
215: Community Forums
216: Community Forums
217: Home
218: Photo Gallery
219: Community Forums
220: Home
221: Community Forums
222: Community Forums
223: Photo Gallery
224: Community Forums
225: Community Forums
226: Community Forums
227: Home
228: Photo Gallery
229: Home
230: CPGlang
231: Community Forums
232: Home
233: Community Forums
234: Home
235: Home
236: Community Forums
237: Community Forums
238: Home
239: Home
240: Community Forums
241: Community Forums
242: Photo Gallery
243: Community Forums
244: Photo Gallery
245: Community Forums
246: Community Forums
247: Statistics
248: Community Forums
249: Community Forums
250: Community Forums
251: Community Forums
252: Photo Gallery
253: CPGlang
254: Home
255: Community Forums
256: Community Forums
257: Photo Gallery
258: Community Forums
259: Community Forums
260: Community Forums
261: Photo Gallery
262: CPGlang
263: Photo Gallery
264: Community Forums
265: Community Forums
266: Community Forums
267: Community Forums
268: Downloads
269: Community Forums
270: Community Forums
271: Home
272: Community Forums
273: Community Forums
274: Community Forums
275: Community Forums
276: Community Forums
277: Downloads
278: Community Forums
279: Community Forums
280: Home
281: Community Forums
282: Photo Gallery
283: CPGlang
284: Community Forums
285: Community Forums
286: Community Forums
287: Community Forums
288: CPGlang
289: Community Forums
290: Community Forums
291: Community Forums
292: Community Forums
293: Photo Gallery
294: Home
295: Community Forums
296: Home
297: Community Forums
298: Community Forums
299: Community Forums
300: Home
301: Community Forums
302: Community Forums
303: Downloads
304: Community Forums
305: Community Forums
306: Your Account
307: Community Forums
308: Statistics
309: Community Forums
310: Community Forums
311: Downloads
312: Community Forums
313: Community Forums
314: Community Forums
315: Community Forums
316: Community Forums
317: Photo Gallery
318: Community Forums
319: Community Forums
320: Community Forums
321: Photo Gallery
322: Community Forums
323: Community Forums
324: Community Forums
325: Photo Gallery
326: Community Forums
327: Downloads
328: Home
329: Community Forums
330: Community Forums
331: Community Forums
332: Home
333: Home
334: Photo Gallery
335: Community Forums
336: CPGlang
337: Home
338: Community Forums
339: Community Forums
340: Community Forums
341: Community Forums

Staff Online:

No staff members are online!
MSN VIRUS WARNING :: Archived
A general meeting place for all pilots!
Post new topic    Revive this topic    Printer Friendly Page     Forum Index ›  Officer's Club

Topic Archived View previous topic :: View next topic  
Author Message
Shadow_Bshwackr
Janitor

Offline Offline
Joined: Jan 21, 2005
Posts: 7015
Location: Central Illinois, USA
PostPosted: Tue Nov 20, 2007 4:36 pm
Post subject: MSN VIRUS WARNING

New MSN Messenger Trojan Spreading Quickly
By Lisa Vaas
November 18, 2007


An MSN Messenger Trojan is growing a botnet by hundreds of infected PCs per hour.


A Trojan is introducing malware into thousands of computer systems worldwide, and the number is growing by the hour.

The malware is being introduced by MSN Messenger files posing as pictures, mostly seeming to come from known acquaintances.

The files are a new type of Trojan that has snared several thousand PCs for a bot network within hours of its launch earlier on Nov. 18 and is being used to discover virtual PCs as a means of increasing its growth vector.

The eSafe CSRT (Content Security Response Team) at Aladdin—a security company—detected the new threat propagating around noon EST on Nov. 18. At 18:00 UTC (Coordinated Universal Time), eSafe had detected 1 operator and more than 500 on-command bots in the network. Less than three hours later, or by 2:30 EST, when eWEEK spoke with Roei Lichtman, eSafe director of product management, the number had soared to several thousand PCs and was growing by several hundred systems per hour.

eSafe is monitoring the IRC channel used to control the botnet. The only inhabitants of the network besides the operator are in fact infected PCs.

The Trojan is an IRC bot that's spreading through MSN Messenger by sending itself in a .zip file with two names. One of the names includes the word "pics" as a double extension executable—a name generally used by scanners and digital cameras: for example, DSC00432.jpg.exe. The Trojan is also contained in a .zip file with the name "images" as a .pif executable—for example, IMG34814.pif.

The files are infiltrating new systems by using either known contacts from which the Trojan has harvested instant messaging names, as well as from the systems of unknown users.

The infection vector—an IM program—isn't new. But the Trojan is the first that eSafe has tracked that has tried to scan for VNC (Virtual Network Computing) instances, likely in order to multiply the botnet's number of connections.

Lichtman said that the Trojan shares common characteristics with other Trojans, looking like "a flexible Swiss Army knife" with multiple processes to steal passwords, to spread the infection and to deliver spam, for example.

The move of malware to VMs (virtual machines) won't surprise those who've been studying the security aspects of this new, red-hot technology. Some of the things that keep them up at night include the possibility of "VMware escape," which is where malware breaks out of a VM and onto the host operating system, which would enable an attacker to potentially install a rootkit, among other things.

David Lynch, vice president of marketing at Embotics, said a more immediate potential threat is virtual appliances: As software delivery mechanisms move to delivering VMs through virtual appliances, they're bringing in a black box of unknowns to the data center, Lynch told eWEEK at a presentation at Interop Oct. 23.

"Virtual appliances run who knows what kind of operating system, with heaven knows what level of hardening and with the potential to introduce backdoors," he said.

Lynch counseled administrators to question the processes for patching the relevant operating system and application set, as well as to learn who will do security maintenance work, as these appliances are put in place.

Given the familiar social engineering aspect of the attack, individuals are being urged to not open files sent unexpectedly from either friends or strangers.

eSafe hasn't determined what criminal activity the botnet is up to at this point.

Please watch out for this one everyone... Wink
Back to top
View user's profile Visit poster's website Photo Gallery
HF_SlowHand
Power User

Offline Offline
Joined: Aug 27, 2005
Posts: 767
Location: Meeechigan
PostPosted: Tue Nov 20, 2007 4:37 pm
Post subject: Re: MSN VIRUS WARNING

glad I dumped aLL MY IM's after CFS1...

thanks CC for hosting COMS so we dont have to use IM to see who is online...

_________________
I deny everything
I lie about everything
And everything I deny
Is a lie!
Back to top
View user's profile Send e-mail Visit poster's website
Shadow_Bshwackr
Janitor

Offline Offline
Joined: Jan 21, 2005
Posts: 7015
Location: Central Illinois, USA
PostPosted: Tue Nov 20, 2007 5:32 pm
Post subject: Re: MSN VIRUS WARNING

That brings up an interesting point Slow...

We can put a chat feature on CC that would be like using an IM from within the site. We've never done it 'cause most use their own IM's. But, this would be one way to 'see' who's online or at least who's online at CC. Smile
Back to top
View user's profile Visit poster's website Photo Gallery
A1Trigger_Happy
Power User

Offline Offline
Joined: Jan 30, 2006
Posts: 778
Location: Alabama, USA
PostPosted: Wed Nov 21, 2007 1:29 am
Post subject: Re: MSN VIRUS WARNING

Intresting read and intresting idea.
Back to top
View user's profile
Display posts from previous:   
Post new topic    Revive this topic    Printer Friendly Page    Forum Index ›  Officer's Club
Page 1 of 1
All times are GMT - 6 Hours

Archive Revive
Username:
This is an archived topic - your reply will not be appended here.
Instead, a new topic will be generated in the active forum.
The new topic will provide a reference link to this archived topic.