TMCnet News

Download.Ject Worm is No Threat to PivX' Qwik-Fix Pro Customers; PivX Researchers Discover New Variant Spreading via Instant Messaging
[August 19, 2004]

Download.Ject Worm is No Threat to PivX' Qwik-Fix Pro Customers; PivX Researchers Discover New Variant Spreading via Instant Messaging

NEWPORT BEACH, Calif. --(Business Wire)-- Aug. 19, 2004 -- PivX Solutions, Inc. (OTCBB:PIVX), the leader in next generation Windows Host Based Intrusion Prevention software for the enterprise security market, has discovered a new Download.Ject worm that is currently spreading on the Internet. The worm appeared Thursday afternoon and PivX is still investigating additional details. Users of PivX's Qwik-Fix Pro were proactively protected against this threat 11 months ago.



The worm arrives as an innocuous looking instant message on AIM or ICQ which says "My personal home page http://XXXXXXX.X-XXXXXX.XXX/." Once the user clicks on this link, Internet Explorer opens a malicious Web site that infects users through several IE vulnerabilities, such as Object Data, Ibiza CHM and MHTML Redirect.

The most noticeable effects of being infected with this new Download.Ject worm are a modified Homepage and search pane in the browser. In place of users' ordinary Homepage is a site called TargetSearch and several browser windows displaying adult advertisements and referral links.


"This is additional proof that virus writers are becoming more creative in their efforts to wreak havoc on the Internet community," said Thor Larholm, senior security researcher at PivX. "There are obvious financial motivations behind this worm, but we have notified anti-virus vendors so that they can create signatures for this threat and all PivX customers were protected before this even became an issue."

Host based security solutions such as Qwik-Fix Pro can protect against this threat by securing IE. All of PivX' current Qwik-Fix Pro customers were protected against this threat almost one year in advance of its creation through a series of security improvements aimed at safe browsing. Qwik-Fix Pro is available starting at a cost of $60 per desktop and $500 per server, with volume discounts available. Please contact PivX Solutions at www.pivx.com or call 949-999-1600.

About PivX

PivX Solutions, Inc. (OTCBB:PIVX) is a security research product and services company that leverages its domain knowledge to create high demand products. PivX also conducts highly confidential security-related work on behalf of some of the world's largest corporations. PivX's flagship product, Qwik-Fix Pro(TM), provides enterprise level host based intrusion prevention against vulnerability pathways, exploits, attack vectors and threats before they are exploited maliciously. PivX research has identified multiple vulnerabilities and ways to exploit many of the world's widely-used Operating Systems and software including Apache www Server, Microsoft Windows, Microsoft IIS, Unreal Engine, Microsoft's Internet Explorer, Valve Half Life, Cisco IOS, Savant, Turbo Tax and Winamp.

For more information, please visit www.pivx.com.

[ Back To TMCnet.com's Homepage ]