Web Design Directory

  w   w   w   .   d   e   s   i   g   n   d   i   r   .   n   e   t
An industry leading web design, hosting and development directory. We bring together the best web designers and their customers. Find the lates website business news and updates.
Search DesingnDIR
Advertising | Submit Site »
   » Home Page / Industry News  
  Find Services Provider       Technology Stories        WebSite Services   
Trio Of Pesky 'Firsts' Threaten Computer Users

2005-01-18 18:18:00

The new year's not even three weeks old, and already hackers have logged some troublesome firsts, security analysts said Tuesday.

The first worm that took advantage of the Dec. 26 earthquake and tsunami disasters has appeared, several anti-virus firms warned users Tuesday. Dubbed "Zar.a," the worm uses the subject "Tsunami Donation! Please help" and message copy "Please help us with your donation and view the attachment below! We need you!" to dupe recipients into opening the attachment and launching the worm.

Although Zar.a -- which has been labeled Sun.a by a few security companies -- spreads by hijacking addresses it finds in the Microsoft Outlook address book, it doesn't seem to do any damage or open any backdoors in the infected machine. Instead, it's goal appears to be to launch a denial-of-service (DoS) attack against a hacker Web site. As of mid-day Tuesday, that site was offline.

Scams leveraging the publicity generated by the disasters in Southeast Asia, and the outpouring of donations to relief groups, have been circulating almost since the tsunami struck, but this is the first worm with a tsunami angle.

It's not unusual for hackers to use current events to entice users into reading the e-mail carriers and opening the attachments that are actually worm payloads.

Another first, said U.K.-based security firm Sophos on Tuesday, is the appearance of a worm that falsely tells them that their computer contains pornographic material, and offers a free cleaner tool to wipe traces of the smut, but not the smut itself, off the drive.

"The Baba.c worm is using a dirty trick," said Graham Cluley, Sophos' senior technology consultant, in an e-mailed statement.

Baba.c claims that the attached "Evidence Cleaner" can hide any traces of pornography, but in actuality, the file runs the worm which opens a backdoor to give the hacker access to the PC.

"Many people are worried about the adult material that inhabits the Internet, and don't want it to reach their PC. It's also clear that the Internet is widely used for accessing hardcore sexual material," added Cluley. "Either way, people want to ensure that their PC contains no evidence of XXX content, and may be tempted to follow this e-mail's instructions."

The last Baba worm, Baba.b, appeared in late October 2004, and was linked to a South Korean university by virtue of text embedded in the malicious code. Baba.b, however, used a common tactic of posing as a mail delivery error message. Baba was also involved in a minor controversy last fall, when some anti-virus firms dubbed it a member of the Netsky family, while others, such as Sophos, maintained that it was different enough to deserve its own designation.

Another first for 2005 was the appearance this weekend of the first new variant of the long-running MyDoom worm family. MyDoom, which is almost one-year old, , has been one of the most pernicious worms ever by measure of the number of variations, now up to at least 35.

The newest MyDoom, labeled "MyDoom.ai" by Symantec (but MyDoom.ap by McAfee, one indication of the confusing MyDoom situation) is a more-or-less standard MyDoom in that it spreads via e-mail and popular file-sharing software like KaZaA and Morpheus, tries to disable a wide range of security software, and blocks access to a long list of anti-virus update sites to prevent infected machines from being purged.

What's unusual about this variant is the sophistication and variety of the messages the attacker uses to entice recipients into opening the attached file.

While some are relatively tame -- and standard -- such as those that claim the message is a warning of an e-mail problem or that requested documents are included, others range from a bogus offer of a porno Web sites password to a claim that the FBI is investigating the recipient's IP address because of a report of online fraud.

"Thank you for registering at WORLDXXXPASS.COM," reads one variation of the new MyDoom. "All your payment info, login and password you can find in the attachment file."

Another MyDoom message read: "There was a fraud attempt logged by The Internet Fraud Complaint Center from your IP. This is a serious crime, so all records was sent to the FBI. All information you can find in the attachment. Your IP was flagged and if there will be anover [sic] attemption [sic] you will be busted. This message is brought to you by the Federal Bureau of Investigation and the National White Collar Crime Center."

MyDoom.ai is currently a low-level threat, according to the alerts generated by most anti-virus firms. Symantec, for instance, tagged the worm with a "2" in its 1 through 5 system, while Sophos labeled it as "low."

Sun plugin gives MS Office users ODF support

Ubuntu Hardy beta released

IBM to invest in open source EnterpriseDB

Likewise opens Windows networks to Linux and Macs users

Oracle offers clustering for Linux

CrossOver Games adds firepower to Linux

Photoshop goes online, free

Sun plans to fully open source Java

Linux guru found guilty of murder



   
» Web Design
Find Web Designers - Huge listing of web design and development companies
» New York Web Design
Aquaffect is a provides highest quality web design and development for affordable price
» Daw - Web Hosting Blog
Daw - Views and Comments about Hosting Industry, News, Trends, Hosts, Products and Sevices.
» VPS Hosting Directory
Virtualization technologies, news and developments. VPS hosting provders, services and products.
» Daw - Web Hosting Blog
Views and Comments about Hosting Industry. News, Trends, Products and Sevices.
» Europe Hosting Directory
Find web hosting in Europe. Providers by platform and by country.
» New York Gallery
New York City Picture Gallery. Photos, Images, Views. Travel to New York!
» Social Web Hosting Network
Come and share your web hosting knowledge. Bookmark the best best news and stories.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371

   Web Design & WebSite Services    - Feature Your Website Here
Business Service
Business Search. US and Canada Business Directory. Virtual Office, Mail Service, Phone Numbers, Real Estate, etc.
  Premium Web Design Templates
We offer lots of web design, flash, osCommerce and other website templates.
  60 Hosting
Get 2600 MB Space, 60 GB Bandwidth, POP3 mail, PHP, MySQL and etc. Only $6.66/month. 60 Day Money Back Guarantee! 20% discount on renewal.
Sponsors: Atlanta Web Development | Web Hosting | Hosting Reviews | Cloud Hosting Automation | Canada Web Hosting | Cloud Hosting Reviews

» Submit your site to Web Design Directory

About Us | Advertising | Partner Network | Featured Advertisers

Contact Us | Privacy | Terms Of Use

© DesignDIR.net 2003 - 2008, a trademark of Business Address Network. All Rights Reserved!