On TechRepublic: 10 cool USB flash drive tricks
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 20 of 25:
Next »
« Previous
DLL Injection Method
Another thing that this worm does is use the DLL injection method to insert itself into Explorer.EXE's processing space. This allows it to get around most firewall software since (wait for it Linux fans) Explorer has Internet access via IE integration. Since most people give IE open access to the Internet this means the worm can communicate in and out as it desires, using it's own email engine (not Outlook) to send out more copies, send spam, or whatever.

DLL injection giving this kind of worm/trojan easy access to the Internet, even when protected by a firewall, is a pretty serious threat. The temporary solution is not allow IE to have access to the Internet and use Mozilla, Firefox or another browser instead. You might also want to block ports used by the worm on your hardware as well as your software.

I am very concerned about this vulnerbility, not because of this worm, but because of the possibilities for abuse from more clever future malware ranging from destructive worms to corporate espionage to annoying adware. It needs to be addressed ASAP by Microsoft and 3rd party firewall developers.

(For you Linux fans, switching OS's isn't an option, at least not right now. It would take a significant worm-induced disaster to get most companies, not to mention home users, to switch. Save your gloating for uber-worm and be ready to collect hefty consulting fees should the worse case scenario develop.)
Posted by: jfrankcarr   Posted on: 03/01/04 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Getting clever  OhMyGosh | 03/01/04
No need for explanations...  Confused by religion | 03/01/04
(NT) Strange - was a Vulnerable OS mentioned or did I miss it?  BanjoPaterson | 03/01/04
Ah Yes - Found it on Symantec... Windows (except 3.x)  BanjoPaterson | 03/01/04
Vulnerability?  KTLA | 03/01/04
Ah Yes?  KayZee | 03/02/04
Here is the news - Microsoft don't have to care a jot  jellyclock | 03/01/04
Windows Exploit???  Gungnir | 03/01/04
Yes, and also  michael-t | 03/01/04
Disabling the emergency brake?  jfrankcarr | 03/01/04
Guide to protecting yourself from attacks.  Heatlesssun | 03/01/04
If you aren't a Windows user, do the following:  jocknerd | 03/01/04
The first 'wild' virus I saw was...  jfrankcarr | 03/01/04
linux has a few anti-virus applications now  V Sanders | 03/02/04
Security Woes  michael-t | 03/01/04
Alternate guide to protecting yourself from attacks.  Gordon Gonsalves | 03/01/04
Thank you MS  michael-t | 03/01/04
Finally....  sonicteam | 03/03/04
Interesting: Bagles that spread themselves (NT)  Anton Philidor | 03/01/04
DLL Injection Method  jfrankcarr | 03/01/04
NOT blocking ZIP files? U R kidding, right?  ejhonda | 03/01/04
One problem though  jfrankcarr | 03/01/04
Here is why...  sonicteam | 03/03/04
just block encrypted zip files  randomletter | 03/03/04
at least viruses for windows  V Sanders | 03/02/04

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

SmartPlanet

Click Here