PDA

View Full Version : Music-eating worm feeds on MP3s



Chevron
06-08-2007, 02:57 PM
The industry bites back

A WIGGLY WORM that deletes any mp3 files it gets its, um, hands on has been detected.

The worm's not that smart or dangerous, unless you leave the virtual barn door open, in which case you could find your digital music collection decimated.

Sophos' most vocal worm-hunter, Graham Cluley reckons the authors of the worm, "are more likely to be teenage mischief makers than the organized criminal gangs we typically see authoring financially-motivated malware these days."

But he's only guessing. It could equally - in fact even more likely - be some twisted music company, pirate-hunting exec thinking he's doing his industry a good turn. Not that the worm knows whether the files it's deleting have been paid for or not.

Rival insecurity firm, Symantec named the worm W32.Deletemusic. It says it wriggles its way from USB stick to hard drives in a rather low-tech fashion. ?

http://www.theinquirer.net/?article=41448

ShadowMaster
06-08-2007, 04:31 PM
The worm's not that smart or dangerous, unless you leave the virtual barn door open, in which case you could find your digital music collection decimated.


Which is why you backup your stuff, including music.

Acid apple
06-08-2007, 06:03 PM
Hmmm... time to get an anti-virus, any links? Anyone?

Miktar
06-08-2007, 06:10 PM
www.avast.com

.dB
06-08-2007, 06:17 PM
www.avast.com

www.getofflimewirepornsitesandtorrentspy.com

Acid apple
06-08-2007, 06:18 PM
Thanks, is AVG good?

Miktar
06-08-2007, 06:24 PM
www.getofflimewirepornsitesandtorrentspy.com

I've been using Avast for years, no issues.

.dB
06-08-2007, 06:30 PM
Ohlawd, AV discussion?

@Apple: Meh, played with AVG and don't get me wrong - It is ****ing awesome, but it get's fooled too easy. It's ridiculously easy to make an ancient trojan/virus (Sub7 for example) fully undetectable (as in run time + scan time), by using common techniques. Hexing the header, or firing up OllyDbg and redoing pointers owns the **** out of it.

Not cool.

virustotal.com <- Try it. I was bored some time ago, and tried various means of getting stuff FUD. Ranging from the above mentioned + a custom crypter I wrote in Delphi and various packers. Kaspersky's pretty on the ball, Avast isn't too shabby. Panda gets fooled by basic techniques then goes and pick up really obscure stuff that fools the aforementioned ones. Stupid.

Common sense is still a powerful weapon imfo. In some cases AV are needed, ie botnets with 'sploits programmed in, but still.

yarly.

Acid apple
06-08-2007, 07:12 PM
Uploading every file and folder is a bit tough on my cap, so I would rather try downloading an anti-virus.

.dB
06-08-2007, 07:22 PM
I think the idea behind Virustotal is more for the AVG POANS SYMANTEC FDSFGS e-bates that usually pop up.

That, and lazy virii coders that have the time to learn and code in assembly, but not the time to set up a virtual box with multiple AV's installed.

yah.

wir
06-08-2007, 07:45 PM
So that's what happened to my sister's music.

Kaspersky FTW!!

Acid apple
06-08-2007, 08:31 PM
HOLY CRAP!!! After 5 minutes of scanning 3 virusses turned up! *Pulls LAN Cable*

Acid apple
06-08-2007, 08:59 PM
6 Virusses, wtf?

Azimuth
07-08-2007, 02:05 AM
Possibly seven. Something keeps adding a superfluous "s" to "viruses". You know, like a snake. And everyone knows snakes are evil. </syllogism>

Frozenfireside
07-08-2007, 11:23 AM
I have also used AVG free edition for ages.
It works.
use Spybot search and destroy to get rid of spyware.

I have recently got Norton 360. I will see how good it is.

GeometriX
07-08-2007, 01:27 PM
I have recently got Norton 360. I will see how good it is.
Impossible.

Acid apple
08-08-2007, 08:51 AM
Ok, so eventually I had 5 trojan backdoors and 5 major virusses that didnt want to heal. I deleted the infected files, rescanned and found no virusses