A clever Trojan tries to steal your credit card information by posing as the Windows activation interface.
Symantec is reporting on a Trojan horse that mimics the Windows activation interface.
What they are calling Trojan.Kardphisher doesn't do most of the technical things that Trojan horses usually do; it's a pure social engineering attack, aimed at stealing credit card information. In a sense, it's a standalone phishing program.
Once you reboot your PC after running the program, the program asks you to activate your copy of Windows and, while it assures you that you will not be charged, it asks for credit card information. If you don't enter the credit card information it shuts down the PC. The Trojan also disables Task Manager, making it more difficult to shut down..
Running on the first reboot is clever. It inherently makes the process look more like it's coming from Windows itself, and it removes the temporal connection to running the Trojan horse. The program even runs on versions of Windows prior to XP, which did not require activation.
This is not an attack that will sneak by you. The executable is nearly 1MB large. But if you find yourself in this situation you should be able to disable it in Windows Safe mode by removing the registry keys described in the Symantec writeup and deleting the program it points to. Updated antivirus software should also be able to remove it.
Copyright 2007 by Ziff Davis Media, Distributed by United Press International
Related stories:
Mac's Boot Camp spawns security worries
Growing up, we looked forward to the idea of increased responsibility. Once these responsibilities had been bestowed upon us, we wondered what the hurry to grow up had been about. Apple Computer may be finding itself in a similar position where security is concerned.
Spyware poses a significant threat on the Net
Spyware is alive and well on the Internet. That's the overall message of a new study by University of Washington computer scientists who sampled more than 20 million Internet addresses, looking for the programs that covertly enter the computers of unwitting Web surfers to perform tasks ranging from advertising products to gathering personal information, redirecting Web browsers, or even using a victim's modem to call expensive toll numbers.
Wal-Mart Offers $498 Linux Laptop
Walmart.com has released the $498 Balance laptop, which runs the Linux-based operating system Linspire. The laptop comes fully equipped with the operating system, Internet suite, and Microsoft-file compatible office suite, and can be used with both dial-up modems and broadband connections. Wal-Mart and Linspire worked together to offer a laptop that would give customers the best user experience at the lowest price possible.
Review: Google Chrome lacks polish under the hood
(AP) -- Google Inc.'s new Web browser, called Chrome, does much of what a browser needs to do these days: It presents a sleek appearance, groups pages into easy-to-manage "tabs" and offers several ways for people to control their Internet privacy settings.
Wi-Spy 2.4x Spectrum Analyzer
This all new version has both its hardware and software upgraded. The Wi-Spy is the world's smallest 2.4 GHz spectrum analyzer that helps troubleshoot and analyze Wi-Fi networks for interference.
Microsoft's newest browser may block ads
(AP) -- The next version of Microsoft Corp.'s Web browser makes it easier for people to surf the Internet without leaving a trace. Companies that sell advertisements online - including Microsoft - can electronically gather tidbits about Web surfers' habits, and then use that information to help decide what kinds of ads to show. However, in the newest "beta" test version of Microsoft's forthcoming Internet Explorer 8, which was made available Wednesday, a mode called InPrivateBrowsing lets users surf without having a list of sites they visit get stored on their computers.
Researchers open new 'window' on solar energy: Cost effective devices expected on market soon
Imagine windows that not only provide a clear view and illuminate rooms, but also use sunlight to efficiently help power the building they are part of. MIT engineers report a new approach to harnessing the sun's energy that could allow just that.
NASA sets date for final shuttle mission in 2010
Following a detailed, integrated assessment, NASA selected target launch dates for the remaining eight space shuttle missions on the current manifest in 2009 and 2010.