Advertisement
Promo

Security threats Toolkit

Trojan poses as fake Lycos screensaver

Dan Ilet ZDNet.co.uk

Published: 07 Dec 2004 12:00 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

An identity-stealing email Trojan that disguises itself as the Lycos anti-spam screensaver is being distributed around the Internet.

According to antivirus company F-Secure, the key-logging Trojan steals usernames, passwords, credit card details and email addresses and travels as an email attachment.

Mikko Hyppönen, F-Secure's director of antivirus research, said that the recent attention from the Lycos story could be an incentive to open the file.

"The whole case has been full of surprising turns from the beginning," said Hyppönen. "Whoever is behind this is someone who felt they were being attacked by Lycos. They are trying to teach people a lesson. A lot of people heard about the screensaver but couldn't download it because the ["Make love not spam"] Web site was down. Lots of people would be interested in looking though."

The subject of the email read: "Be the first to fight spam with Lycos screen saver", with an attachment file labelled: "Lycos screensaver to fight spam.zip".

Hyppönen warned that the Trojan was dangerous if opened, but no more so than other password-stealing malware.

On Friday, Lycos terminated its "Make Love Not Spam" screen saver campaign after it was bombarded with criticism for attacking spammers' Web sites using denial-of-service-like attacks.

Lycos also denied it took brought down two Web sites hosted in China after it claimed it had no intention taking Web sites offline, just slowing them down to raise the cost of spamming.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
77 out of 139 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:




Video icon

Video

Sentry Posts Blog

Symantec website breached

Security company Symantec has said that one of its websites was successfully breached. Romanian security researcher 'Unu' posted details of the breach in a blog post on Monday. Unu... More

Post a comment

Campaigners criticise '£10bn NHS IT ov...

The National Health Service's flagship IT project has been criticised by a tax campaign group for running billions of pounds over budget. The NHS National Programme for IT (NPfIT)... More

2 comments

Climate research centre compromised

One of the UK's leading climate change research centres has had a security breach. The Climate Research Unit at the University of East Anglia (UEA) suffered a compromise of information,... More

1 comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters