AIM worm



Strange AIM worm going around. It apparently includes an interesting combination of rootkits, a rootkit detector, spyware/adware, and a specialized bittorrent client. The machines can then be controlled through IRC. Source seems to be the Middle East…

IM hackers then control a global botnet where their infections can be tested and payloads are pushed. Facetime traced these hackers to the Middle East.
The same IM hackers sent movies by way of IRC and their own version of BitTorrent, installing it without consent. Now the IM hackers are back with more, nastier malware, Rootkit Revealer and adware from 180solutions/Zango.


According to the Sunbeltblog it the tease come-on for AIM is the following:

The worm lures victims through the following AOL Instant Messenger with the following messages:
“great picture :) http://www.picteurestrail.net/Mastermon/XXXXXX.JPG”, or

“not a right time to take a picture haa :-) http://www.picteurestrail.net/Mastermon/XXXXXX.JPG”

“not a right time to take a picture haa :-) http://www.pictrail.net/Matelord/XXXXXX.JPG”

“not a right time to take a picture haa :-) http://www.picstrailx.net/Mateslord/XXXXXX.JPG”

Be suspicious of links.

Related Posts

Blog Traffic Exchange Related Posts
  • Top 10 spyware tricks of 2005 You can tell we're in the last 10-12 days of the year when we start seeing all sorts of year end retrospectives, year's in review, countdowns of the top ___ of ___year ending___. Well, spyware has seen a banner year in many respects and Suzi at Spyware Confidential has a......
  • More on the Santa IM worm There are a couple of stories out about the Santa IM worm, otherwise known as IM.GiftCom.All. First up Sans has some interesting analysis of it. It appears that it's being hosted at 69.56.129.67, when run it resolves smtp.girlsontheblock.com to 38.118.133.241 and attempts to open tcp port 53. It renames itself......
  • The Google Problem Part 2 If you know me.... you know I have a HARD time putting down a problem that's unsolved. Even if it's a problem that really doesn't have a solution (in my control at least)... I have a tendency to look and analyze, turn it over and try and find out as......
Blog Traffic Exchange Related Websites
  • Brain Injuries and Lack of Empathy Damage to the frontal lobe can affect feelings of not only empathy but also of lack of compassion.  And in most cases there are few feelings of guilt as a result of their behavior.  This deficit can alter decisions that most likely would have been handled very differently pre-injury. My......
  • Make Blogging Work for Your Business pt 2 Are you ready to make blogging work for your business? If you already know the benefits associated with corporate blogging, then the next step is to put these concepts to work by creating your own corporate blog and sharing your company with the world. This is part 2 in a......
  • Market Characterization of Global Respiratory Therapeutics Market The Future of Respiratory Diseases Therapeutics - Market Forecasts to 2015, Competitive Benchmarking, Product Pipeline and Deals Analysis Summary “The Future of Respiratory Diseases Therapeutics - Market Forecasts to 2015, Competitive Benchmarking, Product Pipeline and Deals Analysis.” The report provides in-depth analysis of unmet needs, drivers and barriers that impact......
www.pdf24.org    Send article as PDF   

Similar Posts


See what happened this day in history from either BBC Wikipedia
Search:
Keywords:
Amazon Logo

One Response to “AIM worm”

  1. Spyware Informer Says:


    M Hackers Give Away Spyware and More…

    Chris Boyd (aka Paperghost) talks more about it on Vitalsecurity and explains that the worm not only installs a number of rootkits, but also a rootkit remover (the screenshot is from his blog). The said rootkit remover is called Rootkit Revealer. Thi…


Switch to our mobile site