Advertisement
Promo

Online business Toolkit

Panda issues warning against Evil

Will Knight ZDNet.co.uk

Published: 30 Sep 1999 14:58 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A squabble has broken out among anti-virus vendors as to the significance of a new malicious program written using the Active X plug-in for Internet Explorer.

Panda Anti-Virus, the Spanish company that discovered the program, has issued a warning to the public heralding this as the evolution of a new kind of deadly computer virus. Other anti-virus firms beg to differ.

This new program, named "Evil", although dubbed a "Trojan" by Panda is in fact no more than a program launcher. When present on a computer Evil will begin downloading other files from a remote server. These files could be data-destroying viruses or other sorts of malicious code, which does make this a serious issue, but other anti-virus authorities have cautioned that the hype may be getting out of hand.

Jack Clark, European product manager for Network Associates Anti-Virus, for example, says: "I want to stop this before it goes too far. People have been doing things with Active X for a while so it isn't really anything new. Microsoft has already released a patch for Internet Explorer and it isn't a problem for us to protect users against [this]."

Clark also says that Network Associates is yet to issue a fix itself. "To be honest, I really doubt it is in the wild at all," he says. "When we get a sample we will issue a fix, but we haven't seen one so we're doing nothing at the moment." A virus is in the wild when it has been known to actually infect computers.

This is a view shared by one of Network Associates' competitors, Symantec. Aled Miles, managing director for Symantec in the UK and Ireland agrees that Panda is blowing things out of proportion. "This one has not appeared on our radar screen to warrant us issuing a warning. That would be premature."

Panda nevertheless vigorously defends its decision, claiming that perhaps other anti-virus firms are not taking the situation seriously enough. "We have found five separate incidents of Evil in the wild," says Robert Richmond, technical director of Panda UK. "Active X is just like Visual Basic in that it can be changed and modified, and this makes it a serious threat. Active X doesn't carry a safety warning unless you download a patch from Microsoft, and besides you can't say that it is good policy to disable Active X controls."

There have been numerous security problems with the Active X plug-in, and anti-virus experts have often warned that new types of viruses using this plug-in may be on the way. However, this is arguably the first malicious Active X program to have been discovered in the wild.

An update protecting against Evil is available for Panda's anti-virus software from the company's Web site.

Active X is a plug-in for Internet Explorer that allows programs and files to be accessed from an applet embedded in HTML text. Evil will effect anyone using Microsoft Internet Explorer 5 on Windows 95, 98 or NT, who is unlucky enough to visit an infected Web site or receive an email carrying the bug.

Take me to the Hackers news special

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
41 out of 87 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:









Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment

Video icon

Video

Google Chrome

Roundup: Full coverage of Google Chrome

The search giant has launched a beta of its own open-source browser, sending a clear challenge to Microsoft in the way it lets users work with applications More

Blog: Google Chrome has Microsoft's code inside, says MS manager

And furthermore, he says, that's a good thing... More

Blog: Google Chrome — nine things we've found since launch

Google must be very happy with the coverage Chrome has gathered. But it's not all good news... More


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters