DEC 07: Fake Lycos screensaver harbours Trojan - BX's Silicon Valley (Computers, Technology) - Boxden Articles




http://www.boxden.com


A diverse, large, and expanding unique urban community that blog and discuss various aspects of life as the young adult. From music, movie, and video game reviews and discussions, to computers, fitness/health, and latest fashion trends. Its all here, and we are constantly expanding with over 100 new members joining daily!

[Free all expense paid membership to BX] 


PDA

View Full Version : DEC 07: Fake Lycos screensaver harbours Trojan


EASTLondon
12-07-2004, 05:54 PM
By John Leyden

Published Tuesday 7th December 2004 13:49 GMT

Virus writers have begun distributing their wares in emails that pose as Lycos's abandoned "Make love not spam" screensaver.

The fake screensaver emails contain an attachment with a RAR SFX archive that has embedded key logger Trojan inside, antivirus firm Sophos warns. Infected emails come in emails with subject lines such as "Be the first to fight spam with Lycos screen" and an attachment called "Lycos screensaver to fight spam.zip".

Upon successful installation, the key logging Trojan (Mdropper-IT) sends a message to an Indonesian email address confirming its status. The screensaver file, rather than displaying the Lycos screensaver, displays a blank screen.

"Make Love Not Spam" was designed to bombard spam websites with requests, so increasing their bandwidth charges without - in theory - shutting them down. Security firms criticised Lycos's use of "vigilante tactics" especially when two of the targeted websites became unavailable. Several major internet backbone providers and ISP blocked access to Lycos' www.makelovenotspam.com website over concerns over its questionable legality.

Lycos denied it was doing anything wrong, much less creating a DDoS attack platform, but it suspended screensaver downloads after spammers began redirected traffic back to makelovenotspam.com.

This won't necessarily stop people falling for the VX ruse, unfortunately; fake Lycos screensavers will likely become a staple of social engineering tricks for weeks to come. ®

News Article Link (http://www.theregister.co.uk/2004/12/07/fake_lycos_screensaver_trojan/)

McGlögg
12-09-2004, 01:56 PM
ThX 4 the heads up m8! Dont use it, cus I couldnt be arsed to - luckely!

2bad I can only give props once 4 this 1..