You are here: silicon.com > Software > Security Strategy

Security Strategy

Worm warning: Another little wriggler plagues Kazaa

Britney Spears and free porn should be avoided at all costs...

By CNET Networks

Published: 23 August 2002 08:10 BST

By Graeme Wearden

Users of file-swapping service Kazaa have been warned about a new worm that could put their computers under the remote control of hackers.

Anti-virus firm Kaspersky Labs said on Thursday that it had detected the worm, called Duload, spreading across the Kazaa network. This is at least the third worm to hit the Kazaa network, following KWBot last month and May's Benjamin worm.

Duload is a Windows attachment written in visual basic, Kaspersky said. Like KWBot and Benjamin, Duload spreads by modifying the infected computer's system registry and then disguising multiple copies of itself as files that other Kazaa users might like to download.

The first time that Duload is run, it copies itself to the Windows system directory under the name "Systemconfig.exe", and edits the system registry so that it is automatically run whenever Windows is loaded.

Duload then creates a folder called Media, and makes 39 copies of itself. It uses names such as Free Porn.exe, Win An Xbox.exe, Soldier Of Fortune 2 Mutiplayer Serial Hack.exe and Britney Spears Dance Beat.exe.

By then making the Media folder accessible to other Kazaa users, Duload sets up the conditions necessary for it to spread across the Kazaa network.

Two versions of Duload have been detected - Worm.P2P.Duload.a and Worm.P2P.Duload.b. Kaspersky said it has recorded instances of the worm in Italy.

Kaspersky has also warned that Duload.a, when activated, also downloads several Trojan programs that could compromise the victim's computer, laying it open to unauthorised remote management.

A computer infected by a Trojan can be employed by a malicious hacker to take part in a Denial of Service attack.

Kaspersky has added a defence against Duload to its anti-virus database, which can be downloaded from the company's website, http://www.kaspersky.co.uk/download.html .

Graeme Wearden writes for ZDNet UK

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Operational Analyst- Edinburgh- 30,000

You will be reviewing and cross checking the daily back-up sequence outlining any failures, timeframes changes etc; Collating and reviewing the ...

Messaging Support Analyst (AD,TREND protection,Exchange) BANKING

You will be supporting Microsoft Exchange, Windows Server, AD, TREND (virus protection) Blackberry Enterprise Server, MindAlign & Mailmarshal. The ...

IT Manager - 35-40k - Reading

The role will involve managing, supporting and developing the IT systems within the company for example managing the companys Anti-virus An IT ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: