AIM Worm Linked To Middle East Group
TMCnet - World's Largest Communications and Technology Community
 
| More
TMCnews
[November 19, 2005]

AIM Worm Linked To Middle East Group

(TechwebNews.com) A recently discovered worm that spreads through America Online Inc.'s instant messaging network has been linked to additional malware sent by an unidentified group in the Middle East, a security firm said Thursday.

Sdbot.add includes a Lockx.exe rootkit that hides the worm in a computer. Hackers can also use the rootkit to cloak their own malware.

FaceTime Security Labs, which identified the worm late last month, said it has found a rootkit-linked ster.exe file that contains six additional files that give the attacker the ability to upload, download, and monitor the infected host PC.



The software has been linked to a group in the Middle East and has the potential to steal Microsoft Outlook Express email passwords and log keystrokes. The infected computers can also be used as a platform for launching attacks on Web sites or networks, FaceTime said.

The attackers have compromised multiple servers hosted by Internet service providers worldwide to distribute the malware payload, FaceTime said.


The research group is a division of security firm FaceTime Communications, based in Foster City, Calif.

[ Back To TMCnet.com's Homepage ]


Featured White Papers
Top Stories
Related VoIP News

blog comments powered by Disqus


Upcoming Events

October 1- 4, 2012
The Austin Convention Center
Austin, Texas
October 1- 4, 2012
The Austin Convention Center
Austin, Texas
October 1- 4, 2012
The Austin Convention Center
Austin, Texas

DevCon5 provides you with the information and tools you need to exploit the capabilities of revolutionary HTML5 technology
View all >>

Subscribe FREE to all of TMC's monthly magazines. Click here now.