Spam, Virus and Security - Sophos reveals rise of web-based :: March 13, 2007 - FaceTime Security Labs, the threat research and remediation . today announced that its MailGate® Secure Messenger solution has received http://www.internetadsales.com/modules/news/index.php?storytopic=19&start=20HOME | Describing it as one of oddest and more insidious pieces of malware we have encountered in years, FaceTime Security Labs reported Friday evening that it had identified a new threat aimed at Yahoo! Messenger, the companys instant messaging program.
According to FaceTime, the worm infects a PC with two elements: The first is Safety Browser, an application has no uninstaller and disguises itself with an Internet Explorer logo in some instances, FaceTime reports. Because it uses the IE icon, users can easily mistake it for Internet Explorer. The application also hijacks the personal homepage in Internet Explorer and points users to Safety Browsers homepage.
KMeth Worm Strikes Yahoo! Messenger Users, Targeting Google :: the threat research division of IM and greynet security leader FaceTime Communications, have discovered a new threat targeting Yahoo! Messenger users http://goliath.ecnext.com/coms2/gi_0199-5818060/KMeth-Worm-Strikes-Yahoo-Messenger.htmlHOME | The hijack also plays looped music that cannot be stopped when the user starts up the PC or Safety Browser. FaceTimes Spyware Guide blog describes the musis this way:
Music starts to blare out of your PC. Not just any old music bad music. Bad looped music, with screeching guitars and awful drum n bass beats. This madness continues for some time, and for the victim there is another surprise...every single time they boot up their PC from that moment on, the music greets them as their desktop appears and loops for a random amount of time. AIM : - Messagerie Aol Instant Messengeranée, chat gratuit.:: including AIM, AOL Instant Messenger, ICQ, Yahoo Messenger and MSN Messenger; FaceTime Security Labs identified and reported a new threat being http://heikewilt.1afm.com/topic-237.htmHOME | The blog, however, reports that the music is blocked by Microsofts Windows XP Service Pack 2.
The second element is the self-propagating worm that installs an .exe file that spreads the infection through Yahoo Messenger to everyone on the contacts list, according to FaceTime, by sending a Web site link that loads a command file onto the users PC and installs Safety Browser.
Instant messaging worm builds menacing 'botnet' - electronic :: Sep 20, 2006 Security experts at US company FaceTime identified the worm as "W32.pipeline" and warned that it spreads via AOL's instant messenger program http://technology.newscientist.com/channel/tech/electronic-threats/dn10119-instant-messaging-worm-builds-menacing-botnet.htmlHOME | This is the first instance of a complete Web browser hijack without the users awareness. Similar rogue browsers, such as Yapbrowser, have demonstrated the potential for serious damage by directing end-users to potentially illegal or illicit material. Rogue browsers seem to be the hot new thing among hackers, Tyler Wells, senior director of Research at FaceTime Security Labs, said.
The FaceTime advisory reported that the India research arm of FaceTime Security Labs discovered the threat by deploying a honeypot [define] server. FaceTime said users of its RTGuardian and GEM customers are protected from this exploit if they have auto-update features enabled.
Dan Muse is executive editor of internet.coms Small Business Channel, EarthWebs Networking Channel and ServerWatch.
Pre-Article:Symantec Sues Microsoft to Halt Vista Next-Article:Wavesats Shark Attack
|