Forum Index

It appears you have not yet registered with our community which limits what you can do & see. It's Free To register, please click here.





Security Alerts and vulnerabilities Lets keep abreast on the latest threats by posting those findings here..

Reply
 
Thread Tools Display Modes
  #1  
Old 11-13-2004, 10:20 PM
Mobo's Avatar
Mobo Mobo is offline
Thinking outside the box
 
Join Date: Sep 2004
Location: Cape Breton
Posts: 4,574
Send a message via ICQ to Mobo Send a message via AIM to Mobo Send a message via MSN to Mobo Send a message via Yahoo to Mobo Send a message via Skype™ to Mobo
A new computer virus that lures victims the same way phishing e-mails do is on the loose, antivirus firms say. Potential victims get an e-mail saying their credit card has been charged $175 by PayPal, and are urged to click on a link for details. But following the link will cause the consumer's computer to become infected.

advertisement
Other variations offer a peek at potentially ****ographic material, or claim to be from someone looking for new friends; they, too, urge recipients to click on a link.

The virus -- called a MyDoom variant by some researchers, and "Bofra" by others -- also takes advantage of a brand-new vulnerability in Microsoft's Internet Explorer. Microsoft has yet to produce a patch for the flaw, making the virus potentially dangerous. However, it's not spreading dramatically, according to antivirus firms. Symantec Corp. has only seen reports of 29 infections, according to Oliver Friedrichs, senior manager of the firm's security response team.

The worm is, however, generating a lot of stray e-mails in an attempt to infect more machines, said Craig Schumgar of McAfee. The firm rates the worm a medium threat.

(MSNBC is a Microsoft - NBC joint venture.)

How it works
Each infected computer is loaded with code that allows it to serve up a small Web site onto the Internet that's laced with the infecting code. It then scours all files on the computer for e-mail addresses, and sends out e-mails to more potential victims. The link in those e-mails actually directs recipients' computers back to the computer that sent the e-mail. Recipients who click on the link automatically download infected code from the original machine.

"The messages are spreading," Schmugar said. "We are getting reports of thousands of messages being blocked. But it's hard to gauge how many infected computers there are."

The phishing-like tactic may have backfired on the virus author, however, Schmugar said, because many Internet users are now suspicious of such e-mails.

The PayPal variation includes this message:

"Congratulations! PayPal has successfully charged $175 to your credit card. Your order tracking number is A866DEC0, and your item will be shipped within three business days."

It then goes on to urge recipients to click on hyperlinked text within the e-mail.
Reply With Quote
Posted


Reply

Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump



All times are GMT -5. The time now is 06:14 AM.


Firefox 2