You are here: silicon.com > Software > Malware

Malware

Virus alert: Sober trio in the wild

New variants can disable antivirus software...

Tags: sober virus, sober, computer virus

By Greg Sandoval

Published: 16 November 2005 08:50 GMT

There are at least three new variants of the Sober worm spreading across the internet via email messages. The viruses are activated once a user clicks on an infected attachment.

The new variants of Sober, a worm that first appeared in 2003, are capable of disabling antivirus programs, according to Finland-based company F-Secure.

Antivirus company Kaspersky Labs said on its website that large numbers of infected emails have been intercepted. This confirms, said the company, the epidemic was caused by spamming. Kaspersky Labs identified the variants as Sober.u, Sober.v, and Sober.w.

Internet security officials in Germany warned on Monday of a possible Sober attack. In recent months, Sober has been used in that country to spread rightwing propaganda.

Last month, a variant of the Sober worm was spread as an attachment that claimed to be an old class photo sent by a schoolmate.

Sober can hijack a Windows-based computer and force it to send spam emails. The continuous emailing can lead to overloaded servers and reduced network performance.

Security firms cautioned computer users to be careful when opening attachments. Infected messages may have a random subject line or none at all, according to Kaspersky Labs.

But the attachments can be recognized by their names: Exceltab-packed_List.exe; Liste.zip and Reg-List-Dat_Packer2.exe; reg_text.zip Word-Text.zip; Word-Text_packedList.exe; and Word-Text_packedList.zip.

The virus creators appeared to taunt security experts with a message left in the code which reads: "Use your debuggers, it's fun."

Greg Sandoval writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business

Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...


  • Jobs
Application Support Developer, Trading/Spread Betting - London

Application Support Developer, Trading/Spread Betting - London You will join a leading product support team with responsibility for any software ...

C++/JAVA Developer required for Financial Spread Betting Firm - 50-55K

A leading City based financial and sports spread betting firm are looking for a senior C++/Java Server side developer to join their leading IT group ...

Senior C++ and Java Developer Global Finance Spread-Betting Firm

Senior C++ and Java Developer Global Finance Spread-Betting Firm My client is looking for an experienced Senior Developer to join their Dealing team. ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: