World of Warcraft
World of Warcraft players are under attack from password-stealing Trojans
R E L A T E D   C O N T E N T
ADVERTISEMENT

World of Warcraft Trojan spreads from Asia

Password stealing malware hits US and Turkey

Simon Burns in Taipei, vnunet.com 02 Jul 2008
ADVERTISEMENT

Password-stealing programs affecting online games such as World of Warcraft accounted for almost 13 per cent of malware activity detected in a recent survey.

While China and Taiwan are most seriously affected, infections appear to be spreading out of the region, initially into Turkey, according to a report from security firm Fortinet.

"While the main activity remains in China and Taiwan, activity has risen in Turkey," said Fortinet security researcher Derek Manky.

China suffered 36.5 per cent of all attacks from online game Trojans in June, followed by Taiwan with 31.1 per cent, Turkey with 15.4 per cent and the US with 7.4 per cent.

Fortinet recorded a particularly sharp rise in attacks by the 'W32/OnlineGames!tr' malware, which steals passwords and other account data from online games including World of Warcraft and sends them to a remote server.

More than 7.5 per cent of all recorded attack attempts were generated by this Trojan, which was first identified in April 2007.

The malware also attempts to grab log-in details from YouXiChaYuan and Perfect World, two online games popular in China and some other Asian countries.

It is not clear from Fortinet's description whether 'W32/OnlineGames!tr' is limited to specific language versions of Windows or the World of Warcraft client. The company does not explain how PCs become infected.

Once the malware is executed, it adds an instruction to run itself on Windows startup to the Windows registry and also injects code into the explorer.exe process, as well as attempting to steal the game passwords.

"With the online gaming market thriving with consumers, malicious activity will very likely continue for some time in this emerging sector as it forms a viable target," said Manky.

Fortinet gathers statistics by monitoring malware activity reported by its security hardware and software installed at client sites.

See also:

Large virtual transactions to be outlawed  27 Jun 2008
Fears for safety after knife rampage kills seven  11 Jun 2008
AsiaFewer than two in 10 emails are genuine  11 Oct 2007
900 local IP addresses told to stop sending spam or face 'unspecified consequences'  21 Jun 2007

All Computer Games
Tags: World-of-warcraft, Trojan, Security

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C++ Research Developer Global Pharmaceutical Company London C++ Research Developer Biotechology Global Medical Company London Global Biotechnology Company specialising in the research and development of cutting edge health care products is looking for an innovative, ... more >
| Aston Carter
Your role will be working on direct market access and exchange connectivity part of the application built in C++ on a Unix platform. The team is currently just 9 people including architect and team lead, ... more >
| Aston Carter
This is a fantastic opportunity working for a leading global software house, which is part of a larger multi media company. The role is working in the core development team in central London developing a ... more >
| Aston Carter
C++, Developer, OO, Unix/NT, API, London, City, Graduate A senior core C++/ Unix developer wanting to work in the heart of the city for one of London's most successful companies is required. The successful candidate ... more >
More job opportunities