MyDoom.BQ installs a backdoor channel to IRC
MyDoom.BQ installs a backdoor channel to IRC
R E L A T E D   C O N T E N T
ADVERTISEMENT

MyDoom variant opens backdoor IRC channel

Hackers able to take complete control of affected PCs

Iain Thomson, vnunet.com 10 May 2005
ADVERTISEMENT

Security experts have warned of a newly intercepted worm spreading throughout Europe which allows hackers to take remote control of infected PCs.

MyDoom.BQ, also known as Mytob.ED, arrives as an attachment in an email claiming that the user's email system has been "locked" for security reasons.

Once the attachment is opened the worm harvests email addresses to send itself on, and installs a backdoor channel to IRC that allows remote control of the PC.

"The IRC 'bot' program allows a remote user to perform malicious commands, such as downloading or executing files, on an affected machine through IRC backdoors," said a spokeswoman for Trend Micro, which rates the worm a 'medium' threat.

"Gaining remote access to an affected system directly compromises system security and leaves victims at risk of further malicious attacks."

The worm also redirects attempts to log-on to antivirus websites, making it difficult to download fresh virus signature files. To defeat this users should download the definitions on a separate PC and transfer the files over.

See also:

An infected file could be activated before the antivirus engine startsSecurity firm advises customers to ensure they have the latest version  11 May 2005
Wurmark-K displays a picture of an albino gorillaMonkey business hides Wurmark-k payload  10 May 2005
Services suspended between 11.45pm and midnight on 7 AprilSearch engine and email service offline for short time on Saturday  09 May 2005
Users advised to diasable JavaScript in Firefox browserHoles could allow hackers to implant Trojan or key-logger  09 May 2005
Very nasty payloadNow they're getting nasty  06 Apr 2005
SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
Leeds, United Kingdom | UKCRN
Portal Manager, Leeds In charge of the Portal Management team, you'll manage the day to day operations of the portal and provide editorial function and guidance.  You'll understand and own the portal's strategic aim and ... more >
London, United Kingdom | ACAS
Project and Portfolio Managers, London, £35,847 - £46,357 The Advisory, Conciliation and Arbitration Service (ACAS) is a publicly-funded body with over 30 years experience of working with employers, employees and trade unions to deliver better ... more >
Buckinghamshire, United Kingdom | Grass Roots
Graduate SQL Developer, Aylesbury, Buckinghamshire, Excellent Salary + Benefits Grass Roots are one of the Sunday Times Top 100 companies to work for (2007 and 2008). Established in 1980, we're part of the Grass Roots ... more >
Bristol, United Kingdom | Boeing
Sr. Software Architect, Bristol,  Competitive and Relocation Money Available Job Description: This position is for a Systems Analyst/SW Engineer for the Boeing Defence UK office in Bristol. The candidate will lead software development activities in ... more >
More job opportunities