AIM Worm Linked To Middle East Group
TMCnet - The World's Largest Communications and Technology Community
TMC Launches New Sites ::  NGC  |  4GWE  |  Green Tech  |  Satellite  |  IT |  ITEXPO  |  Healthcare  |  Smart Grid  |  M2M  |  Smart Products  |  AstriCon News  |  SATCON News
Share
TMCnews
[November 19, 2005]

AIM Worm Linked To Middle East Group

(TechwebNews.com) A recently discovered worm that spreads through America Online Inc.'s instant messaging network has been linked to additional malware sent by an unidentified group in the Middle East, a security firm said Thursday.

Sdbot.add includes a Lockx.exe rootkit that hides the worm in a computer. Hackers can also use the rootkit to cloak their own malware.

FaceTime Security Labs, which identified the worm late last month, said it has found a rootkit-linked ster.exe file that contains six additional files that give the attacker the ability to upload, download, and monitor the infected host PC.



The software has been linked to a group in the Middle East and has the potential to steal Microsoft Outlook Express email passwords and log keystrokes. The infected computers can also be used as a platform for launching attacks on Web sites or networks, FaceTime said.

The attackers have compromised multiple servers hosted by Internet service providers worldwide to distribute the malware payload, FaceTime said.



The research group is a division of security firm FaceTime Communications, based in Foster City, Calif.

[ Back To TMCnet.com's Homepage ]


Discussions:
Be the first to post a comment on this page!
 
By  
TMCnet
TMCnet Videos
Featured White Papers
Top Stories
Related VoIP News

Today @ TMC
Upcoming Events
ITEXPO East 2010
January 20-22, 2010
Miami Beach Convention Center
Miami, FL
4G Wireless Evolution Conference
January 20-22, 2010
Miami Beach Convention Center
Miami, FL
Subscribe FREE to all of TMC's monthly magazines. Click here now.