Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Internet Attack Exploits Microsoft Software Flaws ( Internet Explorer vulnerable )
Reuters ^ | Fri Jun 25, 2004 08:25 PM ET | Duncan Martell

Posted on 06/25/2004 10:41:28 PM PDT by Ernest_at_the_Beach

Reuters

 

 
Internet Attack Exploits Microsoft Software Flaws

Fri Jun 25, 2004 08:25 PM ET

By Duncan Martell

SAN FRANCISCO (Reuters) - A potentially dangerous attack on personal computers by a virus designed to steal financial data and passwords from Web users rippled across the Internet on Friday, computer security experts said.

The attack, which surfaced earlier this week and is known as the "Scob" outbreak, exploits a vulnerability in servers using Microsoft Corp.'s IIS software and has been called more dangerous than the recent "Sasser" and "Blaster" infections.

The infected servers in turn exploit another vulnerability in Microsoft's Internet Explorer browser to install a Trojan Horse virus on the PCs of Web surfers who visit the infected Web sites, said Alfred Huger, senior director of engineering at Internet security company Symantec Corp.

"All of this takes place while it looks like you're viewing the same Web page," Huger said. "You don't even know that parts of your browser have been redirected to another Web site."

The U.S. Computer Emergency Readiness team warned on its Web site that "any Web site, even those that may be trusted by the user, may be affected by this activity and thus contain potentially malicious code."

The Trojan Horse places a keystroke logger on users' PCs and is designed to capture credit card numbers and passwords and send them back to a server in Russia, said Michael Murray, director of vulnerability and exposure at computer security firm nCircle Network Security.

By late Friday, however, the threat to users' personal data has been diminished, at least for now.

"The server appears to have been shut down in the last eight hours," Murray said. "We don't know if it was shut down by authorities or whether it was accidental."

The attack is more alarming than most because there are no patches available yet from Microsoft to fix the vulnerability in Internet Explorer that lets the hackers take control of computers, security researchers said.

On its Web site, Microsoft said users could search for the files "Kk32.dll" or "Surf.dat" to see if their PCs were infected. The company also suggested users set their browser security level to "high."

Experts also urged computer users to update their anti-virus software protection software

Most anti-virus software has been updated so that it can prevent the Trojan Horse from being installed, but because there is no patch yet available, there's no way to prevent future attacks to install the virus, Huger said.

"The truly alarming part is there is no patch available for that vulnerability," Huger said.



TOPICS: Extended News; Front Page News; News/Current Events; Technical
KEYWORDS: getamac; ieproblems; internetattacks; internetexploiter; lookoutexpress; lowqualitycrap; securityflaw; techindex; trojan; viruses; whoops; windows
Navigation: use the links below to view more comments.
first previous 1-20 ... 41-6061-8081-100 ... 161-175 next last
To: FL_engineer

Is this related to the blue apple that looked harmless?


61 posted on 06/26/2004 7:17:56 PM PDT by floriduh voter (http:// www.conservative-spirit.org (FV) http://www.jangovan.com/ to Defeat Greer)
[ Post Reply | Private Reply | To 30 | View Replies]

To: Lauren BaRecall
Found a website that might help, haven't used it before though:

Newbie Help Forum

Found it using google and " trojan in quarrantine, " phrase.

62 posted on 06/26/2004 8:28:56 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 60 | View Replies]

To: Lauren BaRecall
Has a search facility of its site using google. Found this:

Something odd happening with your computer?

Using this search "removing virus" search argument/.

63 posted on 06/26/2004 8:38:48 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 62 | View Replies]

To: Lauren BaRecall
And there is this:

_______________________________________________________________

Free Trojan Removal Info
Free guide on understanding common
computer virus symptoms and causes.
www.infobert.com

64 posted on 06/26/2004 8:40:29 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 60 | View Replies]

To: All
Here is a discussion on a Forum regarding removing a specific trojan...:

AUMHA FORUMS

65 posted on 06/26/2004 8:48:10 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 64 | View Replies]

To: All
This takes one to , I think the home page:

SOLUTIONS FROM THE TRENCHES
Answers that worked from AumHa Forums

66 posted on 06/26/2004 8:58:28 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 65 | View Replies]

To: All; *tech_index
Another Forum:

SpywareInfo (forum )

67 posted on 06/26/2004 9:13:02 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 66 | View Replies]

To: FL_engineer

I'm so glad for this post about Firefox. I've now got it downloaded and enjoying it.

It really is faster than IE.


68 posted on 06/26/2004 9:22:13 PM PDT by Cedar
[ Post Reply | Private Reply | To 30 | View Replies]

To: Ernest_at_the_Beach

I just spent time online last week with the tech guy at Spyware Info, getting rid of a trojan. Finally got it conquered with his help --it's a great site for spyware help.


69 posted on 06/26/2004 9:27:00 PM PDT by Cedar
[ Post Reply | Private Reply | To 67 | View Replies]

To: Cedar; Lauren BaRecall

Very good info... I just discovered it with Google in responding to Lauren BaRecall .

Seems to me that is the place to start.

What about the hijack package...that is new to me.

I have Spybot, just ran it.


70 posted on 06/26/2004 10:11:58 PM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 69 | View Replies]

To: B Knotts
Is the flight simulator to which you refer FlightGear?
71 posted on 06/26/2004 10:24:53 PM PDT by Philip_the_evangelist
[ Post Reply | Private Reply | To 54 | View Replies]

To: dakine

Did you see this??


72 posted on 06/27/2004 12:27:31 AM PDT by codyjacksmom
[ Post Reply | Private Reply | To 30 | View Replies]

To: Ernest_at_the_Beach

Thanks...I need to get an education for use of my computer!


73 posted on 06/27/2004 1:05:21 AM PDT by MEG33 (John Kerry's been AWOL for two decades on issues of National Security)
[ Post Reply | Private Reply | To 62 | View Replies]

To: Philip_the_evangelist

Yes. It's OK, I suppose, but isn't anywhere near as good as MS Flight Simulator.


74 posted on 06/27/2004 6:34:34 AM PDT by B Knotts
[ Post Reply | Private Reply | To 71 | View Replies]

.


75 posted on 06/27/2004 6:36:02 AM PDT by firewalk
[ Post Reply | Private Reply | To 74 | View Replies]

To: 2111USMC

ping


76 posted on 06/27/2004 9:45:44 AM PDT by iowamomforfreedom (The right to die? or the right to be killed - http://www.life-or-death-decisions.org)
[ Post Reply | Private Reply | To 75 | View Replies]

To: FL_engineer

What I use to read email is Mailwasher. It reads emails only by TEXT method. I purge about 95% of my emails, before Outlook gets ahold of them.
And mailwasher has a FREE version of it!
Here is the link.
http://www.mailwasher.net/


77 posted on 06/27/2004 9:54:36 AM PDT by ktw (kakkate koi)
[ Post Reply | Private Reply | To 31 | View Replies]

To: MEG33
Me too. Spybot and that website Spyware Info seem to be the way to go.

I still have some unexplained mysteries on my machine.

Getting geared up to try Linux.

78 posted on 06/27/2004 11:20:12 AM PDT by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 73 | View Replies]

To: Ernest_at_the_Beach
Thanks a million!

I have to take a night to sit down and read and figure this out. In addition to your links, I picked up a couple a few weeks ago. I just haven't had the time....

Here's one I found:

Spybot

A friend of mine told me that it doesn't catch everything, though. Have you ever tried it?

79 posted on 06/27/2004 1:02:45 PM PDT by Lauren BaRecall (Just give the kid a pack of cigarettes - you know he's only gonna go out and smoke anyway!)
[ Post Reply | Private Reply | To 66 | View Replies]

To: Ernest_at_the_Beach
Well, I could go back to school for this, or I can figure it out. Figuring it out is a whole lot more fun, though. Aggravating fun - but that's the best kind! :oD
80 posted on 06/27/2004 1:05:53 PM PDT by Lauren BaRecall (Just give the kid a pack of cigarettes - you know he's only gonna go out and smoke anyway!)
[ Post Reply | Private Reply | To 66 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-20 ... 41-6061-8081-100 ... 161-175 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson