Esato

Forum > General discussions > General > New Virus Targets Windows Mobile

Author New Virus Targets Windows Mobile
ibme
T68 gold
Joined: Apr 17, 2004
Posts: 3
PM
Posted: 2004-07-20 12:21
Reply with quoteEdit/Delete This PostPrint this post
I hope this hasnt been posted before:

Anti-virus vendors have confirmed that the first virus for Microsoft's mobile operating system has been detected.

Information security software developer Kaspersky Labs says the new virus, Duts, has been designed to infect Windows Mobile, one of the most popular platforms for mobile devices such as personal digital assistants and smartphones.

"Duts is a proof-of-concept malicious program; it demonstrates that Windows Mobile is vulnerable to infection. Our tests show that the virus can effectively propagate in such an environment," says Eugene Kaspersky, head of anti-virus research at Kaspersky Labs.

Duts was created by Ratter, the pseudonym of a virus-writer who is an active member of the "29A" international group. The group is known for its proof-of-concept viruses, including the recent Cabir, the first worm for Symbian OS.

Duts is a classic parasitic virus and can penetrate mobile devices via e-mail or the Internet, through removable memory, via synchronisation with a PC, or using Bluetooth technology.

Once the infected file is launched, the following dialogue box will be displayed: “Dear User, am I allowed to spread?” If the user clicks yes, Duts penetrates all executable files larger than 4KB located in My Device (the root directory).

When infecting, the virus writes itself to the end of the file and modifies the entry point. An empty header field will then be flagged with the text 'atar' to prevent re-infection of already infected files. Duts does not appear to have any destructive payload, Kaspersky says.

"The events of the past month are really disturbing. The computer underground has pounced on the new opportunities offered by mobile devices. And now malicious programs are evolving in yet another direction, bringing the first global outbreak caused by a mobile virus closer and closer."

Kaspersky does not expect a major outbreak, since Duts is unable to spread independently, only infects a limited number of files, and signals its presence in the system when attempting to propagate.
Gigs
P1
Joined: Jan 19, 2004
Posts: > 500
From: The planet Snibertron!
PM, WWW
Posted: 2004-07-20 22:04
Reply with quoteEdit/Delete This PostPrint this post
Bah.. Proof of concept virii still doesn't signal a true virus.

Thats like saying "P1000 release. SE today showed a proof of concept phone believed to be an idea for their next smart phone"

Still at least it sounds nastier than cabir
wapchimp
C905 Silver
Joined: Jun 09, 2002
Posts: > 500
From: Land of the chimps
PM, WWW
Posted: 2004-07-21 00:13
Reply with quoteEdit/Delete This PostPrint this post
Y dont these virus creators make money by stopping viruses?

This message was posted from a Nokia

slattery69
T68i
Joined: Jan 03, 2003
Posts: > 500
From: north east england
PM
Posted: 2004-07-21 00:19
Reply with quoteEdit/Delete This PostPrint this post
some virus maker are employed to stop virus. ibm employ hackers to test the system they sell.
we have ibm systems in place at work and 5 firewalls and a team of hackers is employed by ibm to test the system and drop virus etc in so uck so far never made it past the 4th firewall
from what weve been told anyway
Access the forum with a mobile phone via esato.mobi