WebProWorld Part of WebProNews.com
Page One Link To Us Edit Profile Private Messages Archives FAQ RSS Feeds  
 

Go Back   WebProWorld > Webmaster, IT and Security Discussion > Internet Security Discussion Forum
Subscribe to the Newsletter FREE!


Register FAQ Members List Calendar Arcade Chatbox Mark Forums Read

Internet Security Discussion Forum This forum is for the discussion of security related issues. If you find a new Phishing scheme, spyware, virus or malicious site - let us know about it. If any of the above found you... here's where you ask for help.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 09-22-2005, 12:21 PM
Guest
 

Posts: n/a
Default Putting Locks On The Bagle Trojan

New bagles are flooding the web and it’s not through your local bakery either. The British security company, SophosLabs, continues to monitor the flow of new versions of the Troj/BagleDI-U Trojan horse by spamming millions of email addresses.

The attacks started on Monday morning, around 10:00 a.m. EDT and continued until 5:00 p.m. EDT. Then the malevolent hacker began the process again on Tuesday at the same time.

This bagle is a nasty little bugger too. All the versions go into computers and attempt to turn off anti-virus and security software and block access to security websites so hackers can run rampant through infected machines.

According to Sophos ,the messages can be identified by a number of criteria: the subject line is blank, the body message test is “new price,” and the file itself could be multiple name but follow similar lines like “09_price.zip,” “price_new.zip” or “price2.zip.” Be on the look out for these conspicuous suspects.

"This is the second massive email attack phase from this hacker in two days - the creator is obviously intent on infecting as many people as possible," said Carole Theriault, senior security consultant at Sophos, on their website. "All computer users should avoid opening unsolicited email attachments, and ensure that their anti-virus protection is up to date. Businesses should also consider blocking all executable code from entering their networks via email - most companies have no need to receive computer programs via this route, and it dramatically reduces the risk of infection".

This onslaught for computers is creating havoc because of the nature of this beast, it shuts down PC security measures already in place. There are tons of these variants going out and security companies will need to be on their toes. A number of experts at these various companies have suggested this is just the beginning of a massive attack against computer so hackers can add more zombie PCs to their stocks so much of this can’t be traced back to them.

As hackers continue to get more aggressive in their pursuits, computer users must remain vigilant. As recommended by Sophos, make sure unknown email attachments are gotten rid of. Also make sure updates are done regularly both for virus and firewall protection but also through whatever browser and OS package one uses, either at home or at work. Also be careful of adware and spyware. These basic tasks won’t stop everything but they will certainly go along way toward protecting both the home PC and the computers at the office.
Reply With Quote
  #2 (permalink)  
Old 09-27-2005, 05:05 PM
kgun's Avatar
kgun kgun is offline
WebProWorld 1,000+ Club
 

Join Date: May 2005
Location: Norway
Posts: 4,565
kgun RepRank 3kgun RepRank 3
Default If you are infected, you find som excellent online

trojan scanners on my security site:

http://multifinanceit.com/it/security/security.htm

Look at the links under Security.

I regularily run these tools.

There are more Online scanners in the "Links" collection.

CTRL + F + OnlineVirusScan

And I reccomend:
http://www.abtrusion.com/

or this free tool:

StartUp Guard v1.0:
http://www.acelogix.com/download.html

They prevent access to the registers without your permission. And do not forget Pctools Spyware Doctor with onguard protection.
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > Internet Security Discussion Forum
Tags: bagle, locks, putting, trojan



Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Search Engine Friendly URLs by vBSEO 3.0.0