08 Nov 2007
The malware authors behind last week's MacOS X Trojan attack are continuing development on the malicious downloads, security experts warn.
Mikko Hyppönen, chief research officer at F-Secure, said in a company blog that the Trojan had already been modified to produce more than 32 variants.
"The gang behind it seems serious about targeting Mac users as well as Windows users," wrote Hyppönen. "This is not likely to end any time soon."
The Mac Trojan was discovered last week by researchers at internet security firm Intego. The malware disguises itself as a codec file which is needed to view movies.
The code was thought to be hosted only on adult movie pages, but was soon discovered on a number of fake codec sites and in some cases was being delivered alongside Windows malware.
However, while F-Secure has warned users about the Trojan, another security executive is attempting to allay fears about the threat.
Alex Eckelberry, president of Sunbelt Software, said in a blog posting that the malicious payload in the Trojan may not be as serious as some believe.
The malware, known as DNSchanger, alters the victim's DNS server to allow the attacker to reroute website requests.
Intego reported that the Trojan could allow an attacker to hijack and redirect web requests for sites such as PayPal and eBay to phishing sites.
But Eckelberry maintains that the Trojan is not likely to redirect URL requests for major sites, and will affect users in a much more subtle way by redirecting such things as search queries to pages controlled by attackers.
"This Trojan is all about generating affiliate commissions by redirecting search results," he wrote. "So if you Google 'spyware', you will get search results that they want you to see."
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
ScheduALL, the global leader of Enterprise Resource Management...
My client is a well established, non profit organisation;...
PHP Web Developer – £30,000 - £35,000 PHP, MySQL, HTML...
HEAD OF DIGITAL - London - £80-95K + Excellent Bens...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?