Wurmark-K displays a picture of an albino gorilla
Wurmark-K displays a picture of an albino gorilla
R E L A T E D   C O N T E N T
ADVERTISEMENT

Virus writers resort to gorilla tactics

Monkey business hides Wurmark-k payload

Robert Jaques, vnunet.com 10 May 2005
ADVERTISEMENT

A newly discovered email worm, dubbed Wurmark-K, displays a picture of an albino gorilla as it infects compromised PCs.

Security experts said today that emails carrying the virus as an attachment have a variety of characteristics including subject lines: 'Hehehe LOL!!' and 'Your Photo Is On A Webpage!!'.

IT security firm Sophos warned that opening the attached Zip file and launching the files contained inside will infect the PC with the worm and display a graphic of an albino gorilla. This graphic can be viewed here.

As the image is being displayed, Wurmark-K installs the Rbot-ABK network worm and backdoor Trojan. This malicious worm can allow hackers to break into infected computers to steal information from the unsuspecting user or plant other malicious code.

"This worm is no laughing matter. Its intention is to hand over control of your PC to remote hackers," said Graham Cluley, senior technology consultant at Sophos.

"Unless computer users properly defend themselves with up-to-date antivirus software, firewalls and security patches they run the risk of having their PCs exploited and their bank accounts emptied."

Cluley believes that the Wurmark-K and Rbot-ABK worms are evidence of a growing trend of malware spying on innocent home computer owners and poorly-protected businesses.

"Organised criminals are involved in virus writing at a greater level than ever before. They are becoming more aggressive in their attempts to find new computers to infect and control," he said.

"If you attach a new, unpatched and unprotected computer to the internet, it can easily be under the control of hackers within a matter of minutes."

More information on Wurmark-K and Rbot-ABK is available here.

See also:

Sober-N generated nearly half of all virus strikes in MaySober-N responsible for 44 per cent of all virus activity  01 Jun 2005
Newly intercepted Sober.q spreading across EuropeVirus-infected Zombie PCs used to send offensive spam  16 May 2005
An infected file could be activated before the antivirus engine startsSecurity firm advises customers to ensure they have the latest version  11 May 2005
ISPs have a 'duty of care' to protect cusomersCable firm promises built-in security software from the summer  10 May 2005
MyDoom.BQ installs a backdoor channel to IRCHackers able to take complete control of affected PCs  10 May 2005
SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
Senior C# Agile Web Developer, Online Gaming, London My Client provides adult customers with high quality gambling and gaming services in an environment that is convenient, entertaining, fair, regulated and secure. My Client is one ... more >
| Aston Carter
EMC, NetApps, West London, Media • NetApps FAS ... more >
| Abraxas
Data Analyst / MI Analyst – Leading Online Gaming Company A Data Analyst / Trafficker is sought by a leading online gaming company. The role encompasses all aspects of online advertising including data handling, communicating ... more >
| JAM Recruitment
Field Applications Engineer Power Electronics/Supplies Europe/Based Surrey Permanent Position £35-45k Basic+Bonus 10-15%+Car/Car allowance A global organisation involved with the design and development of power supplies actively requires a Field Applications Engineer to strengthen it existing ... more >
More job opportunities