Instant Messaging Planet   Earthweb  
Images Events Jobs Premium Services Media Kit Network Map E-mail Offers Vendor Solutions Webcasts
   subjects:
Network Security & Privacy Blog
More SSH-Targeted Attacks, This Time for Debian et al

Charter Officially Speaks on NebuAd

Shorter Charter: We'd Rather You Just Not Read the Privacy Advisory in the First Place

More Open Networks Today



Search EarthWeb Network

internet.commerce
Be a Commerce Partner
Laptop Batteries
Send Text Messages
Server Racks
Imprinted Gifts
Boat Donations
Laptops
KVM Switches
Best Price
Memory Upgrades
Promotional Products
Promotional Gifts
Logo Design
Baby Photo Contest
Promotional Golf

Instant Messaging Planet : Security: Large Scale IM Virus Attack Feared

Product Watch
OneTeam - OneTeam: Productive Instant-Messaging Client
OneTeam is an Instant Messaging client targeting enterprise users and developed with productivity in mind.

Bopup Observer - Secure one-way instant messenger for alerting and notification use.
This clear, easy to use, light-weight secure IM client designed for instant alerting and urgent messaging for use in a business or corporate environment.

mig33 - Instant Messenger
Yahoo, MSN, AOL, mig33, voice, call, VOIP, game, application, java, symbian, gprs, GSM, 3G, instant messaging, Nokia, Sony Ericsson, Photo, Profile

more products >>

Glossary
Jabber
LDAP
MMS
presence
SIMPLE
SIP
SMS
SSL
store and forward
XMPP
Search for more networking terms ...
 
FREE Tech Newsletters

Meet the HP ProLiant DL385 G5

Large Scale IM Virus Attack Feared
September 29, 2004
By Ryan Naraine

Security researchers are seeing the first signs of a large-scale virus attack taking advantage of a known flaw in the way JPEG images are processed in Microsoft Windows products.

Just days after warning that proof-of-concept exploits were circulating, the SANS Internet Storm Center (ISC) said it had received reports that a "GDIplus.dll" exploit embedded on porn images was making the rounds on adult newsgroups.

Microsoft has already released a patch to fix the way GDI libraries handle JPEG processing, and it released a scanning tool to help detect the presence of products that contain the GDI+ component and determine whether a security fix should be applied.

In addition to adult images on Usenet, the ISC said it was investigating reports that the profile feature in America Online's AIM instant messaging product was being used to entice users to view malicious JPEG files.

The basic method is to attach GDI exploits to profiles on AIM. The attacker then sends messages to get the user to go look at the user profile that has a .JPEG with the GDIplus.dll exploit in it," the Center said in an advisory.

The exploit only uses the AIM user profile feature to propagate itself and does not target any vulnerabilities in the AIM software.

Anti-virus firm Symantec (Quote, Chart) has released advisories for two Trojan Horse programs exploiting the GDI+ library flaw described in Microsoft's MS04-028 advisory.

Symantec has updated its virus definitions to protect from Trojan Moo, which has been programmed to download an .EXE file from a Web site. Symantec rates the Trojan Moo threat as "low."

The company also warned that a backdoor Trojan exploiting the same flaw was making the rounds. Symantec said the Trojan is capable of connecting to a predefined IP address to start a command shell on an infected system. A command shell allows an attacker to download and execute harmful code from a predefined domain.

Removal instructions for the backdoor can be found here.

Tools:
Add www.instantmessagingplanet.com to your favorites
Add www.instantmessagingplanet.com to your browser search box
IE 7 | Firefox 2.0 | Firefox 1.5.x
Receive news via our XML/RSS feed

Security Archives

Stay up to date! Get real-time news and reviews about the latest innovations in internet technology.
Learn about expanding business opportunities for the reseller channel. Visit IT Channel Planet.
Flash Demo: Learn how IBM Information Server Blade is easy to manage, highly scalable and efficient.
Visit ServerWatch for the latest server news and trends.
HP eBook: Using Business Service Management (BSM) to Manage Your Business Applications



JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Solutions
Whitepapers and eBooks
Microsoft Article: Will Hyper-V Make VMware This Decade's Netscape?
Microsoft Article: 7.0, Microsoft's Lucky Version?
Microsoft Article: Hyper-V--The Killer Feature in Windows Server 2008
Avaya Article: How to Feed Data into the Avaya Event Processor
Microsoft Article: Install What You Need with Windows Server 2008
HP eBook: Putting the Green into IT
Whitepaper: HP Integrated Citrix XenServer for HP ProLiant Servers
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 1
Intel Go Parallel Portal: Interview with C++ Guru Herb Sutter, Part 2--The Future of Concurrency
Avaya Article: Setting Up a SIP A/S Development Environment
IBM Article: How Cool Is Your Data Center?
Microsoft Article: Managing Virtual Machines with Microsoft System Center
HP eBook: Storage Networking , Part 1
Microsoft Article: Solving Data Center Complexity with Microsoft System Center Configuration Manager 2007
MORE WHITEPAPERS, EBOOKS, AND ARTICLES
Webcasts
Intel Video: Are Multi-core Processors Here to Stay?
On-Demand Webcast: Five Virtualization Trends to Watch
HP Video: Page Cost Calculator
Intel Video: APIs for Parallel Programming
HP Webcast: Storage Is Changing Fast - Be Ready or Be Left Behind
Microsoft Silverlight Video: Creating Fading Controls with Expression Design and Expression Blend 2
MORE WEBCASTS, PODCASTS, AND VIDEOS
Downloads and eKits
Sun Download: Solaris 8 Migration Assistant
Sybase Download: SQL Anywhere Developer Edition
Red Gate Download: SQL Backup Pro and free DBA Best Practices eBook
Red Gate Download: SQL Compare Pro 6
Iron Speed Designer Application Generator
MORE DOWNLOADS, EKITS, AND FREE TRIALS
Tutorials and Demos
How-to-Article: Preparing for Hyper-Threading Technology and Dual Core Technology
eTouch PDF: Conquering the Tyranny of E-Mail and Word Processors
IBM Article: Collaborating in the High-Performance Workplace
HP Demo: StorageWorks EVA4400
Intel Featured Algorhythm: Intel Threading Building Blocks--The Pipeline Class
Microsoft How-to Article: Get Going with Silverlight and Windows Live
MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES