internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Norton AntiVirus 2008

Most Popular Software Downloads
Ad-Aware 2008 Free
Windows XP Service Pack 3
Internet Explorer 7
QuickTime for Windows
Adobe Flash Player
AVG Anti-Virus Free
Paint Shop Pro
Windows Live Suite
CCleaner (Crap Cleaner)
Winamp

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

New Virus Pretends to Be WGA
Virus Spreading via AIM Network
Andy Patrizio

A virus posing as Microsoft's controversial anti-piracy software is spreading via AOL's popular Instant Messenger network, but it appears to be more of a jab at Microsoft than a real threat.

The message itself does not spoof someone in the user's Buddy list, it comes in from an unknown sender. The virus then comes via a link in the instant message, should the user be foolish enough to click on a link sent by someone they don't know.

Once infected, the virus registers itself as a new system driver service named "wgavn" and has the public display name of "Windows Genuine Advantage Validation Notification." If the user shuts it down, the user is informed that removing or stopping the service will cause system instability.

Unlike WGA, the virus poses a real danger because it disables the Windows firewall and opens a backdoor to the infected computer. It's not known at this point whether anyone has actually exploited such an opening caused by the new virus.

"If you get it, it's as bad as any of them," said Randy Abrams, director of technical education for Eset Software, developer of the NOD32 antivirus program. "Ok, it's not flashing your BIOS chip or grabbing specific banking info, but once you get a backdoor on a computer, it's trivial to download a bot or do much more."

ESET's anti-virus hunters first heard of the WGA impersonator, which it dubbed Win32/IRCBot.OO, on June 29 and got in a sample of the virus on July 1. But Abrams admits it hasn't been thoroughly examined because as far as threats go, this one is pretty far down the list. It ranked 1,400 on Eset's threat list.

"The choice of names makes it clear it's an attack on WGA. Its effect is not in harming users but in making bad publicity for Microsoft," said Abrams.

Windows Genuine Advantage is a controversial utility in Windows XP that verifies that the installation is not pirated. However, it has drawn user ire and two lawsuits over the fact that Microsoft did not disclose what it does. Also, users were forced to download WGA or forfeit receiving non-critical software updates from Microsoft.

At this point, Abrams notes there are probably more names for the virus than there are infections. It's a long-standing problem in the antivirus vendor world; every vendor gives a new virus its own choice of name. When a new-found virus comes in, the first concern is finding a fix, not worrying about naming conventions, Abrams pointed out.

According to the virus names list on AV-test.org, AVG calls the virus Worm/Opanki.IP; BitDefender calls it Backdoor.IRCBot.JV, F-Prot calls it a new variant of W32/Threat-HLLIM-based!Maximus, Kaspersky calls it Backdoor.Win32.IRCBot.st, McAfee calls it W32/Opanki.worm.gen and Sophos calls it W32/Cuebot-K.

News courtesy of internetnews.com

July 12, 2006

Download Windows Live One Care Now!Download

View All Anti-Malware Tools

View All Anti-Virus Software

Contents:
1. Virus Spreading via AIM Network






JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Solutions
Whitepapers and eBooks
Microsoft Article: Will Hyper-V Make VMware This Decade's Netscape?
Microsoft Article: 7.0, Microsoft's Lucky Version?
Microsoft Article: Hyper-V--The Killer Feature in Windows Server 2008
Avaya Article: How to Feed Data into the Avaya Event Processor
Microsoft Article: Install What You Need with Windows Server 2008
HP eBook: Putting the Green into IT
Whitepaper: HP Integrated Citrix XenServer for HP ProLiant Servers
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 1
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 2--The Future of Concurrency
Avaya Article: Setting Up a SIP A/S Development Environment
IBM Article: How Cool Is Your Data Center?
Microsoft Article: Managing Virtual Machines with Microsoft System Center
HP eBook: Storage Networking , Part 1
Microsoft Article: Solving Data Center Complexity with Microsoft System Center Configuration Manager 2007
MORE WHITEPAPERS, EBOOKS, AND ARTICLES
Webcasts
Intel Video: Are Multi-core Processors Here to Stay?
On-Demand Webcast: Five Virtualization Trends to Watch
HP Video: Page Cost Calculator
Intel Video: APIs for Parallel Programming
HP Webcast: Storage Is Changing Fast - Be Ready or Be Left Behind
Microsoft Silverlight Video: Creating Fading Controls with Expression Design and Expression Blend 2
MORE WEBCASTS, PODCASTS, AND VIDEOS
Downloads and eKits
Sun Download: Solaris 8 Migration Assistant
Sybase Download: SQL Anywhere Developer Edition
Red Gate Download: SQL Backup Pro and free DBA Best Practices eBook
Red Gate Download: SQL Compare Pro 6
Iron Speed Designer Application Generator
MORE DOWNLOADS, EKITS, AND FREE TRIALS
Tutorials and Demos
How-to-Article: Preparing for Hyper-Threading Technology and Dual Core Technology
eTouch PDF: Conquering the Tyranny of E-Mail and Word Processors
IBM Article: Collaborating in the High-Performance Workplace
HP Demo: StorageWorks EVA4400
Intel Featured Algorhythm: Intel Threading Building Blocks--The Pipeline Class
Microsoft How-to Article: Get Going with Silverlight and Windows Live
MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES