You are here: silicon.com > Software > Malware

Malware

Russian hackers sold WMF exploit for $4k

To "the criminal adware/spyware business"...

Tags: kaspersky labs, wmf, flaw, hackers

By Greg Sandoval

Published: 3 February 2006 08:50 GMT

Competing hacker groups in Russia were peddling the exploit code responsible for the Windows Meta File (WMF) attacks last December for $4,000, according to security company Kaspersky Labs.

According to a Kaspersky quarterly report released this week: "One of the purchasers of the exploit is involved in the criminal adware/spyware business. It seems likely that this was how the exploit became public."

The WMF flaw unsettled security experts after they found that the virus-writing community discovered the vulnerability before they did. A slew of Trojan programs were written to try and take advantage of the exploit.

A statement on the Kaspersky Labs site said more than a thousand instances of malicious code were detected in a week. "As the vulnerability was present in all versions of Windows, the situation threatened to spiral out of control."

According to Kaspersky, the situation was mitigated by the holiday season, when internet use was much lighter than normal.

When the corrupt WMF files finally came to the attention of anti-spyware experts, they were traced back to websites known to spread advertising software surreptitiously to computers.

Security companies have lamented the practice by some web advertisers of paying others to distribute their software. Some of the more unscrupulous among them are in the business of distributing exploits that facilitate the spread of adware without the knowledge of computer users.

Greg Sandoval writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Oracle DBA / Unix Admin- Financial Spread Betting- London

I am working on behalf of the World's largest financial spreadbetting firm. They are currently looking for an experienced Oracle DBA to head up their ...

Global Manufacturing company in Manchester seeks SAP ABAP developer

This is very high profile project within an organisation made up of 50,000 people spread across 35 countries. Billed as the cornerstone enabling ...

Senior Infrastructure Officer

The successful candidate will join a team with responsibility for supporting the councils network of 120 server systems and 800 PCs spread across 25 ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: