03 Dec 2008
Experts at security company Trend Micro have warned of a new worm that spreads by exploiting a known vulnerability in Windows.
The DOWNAD.A worm exploits the MS08-067 patch, which was released out of cycle after reports that the flaw was being exploited in the wild.
The vulnerability affects all currently supported versions of Windows and Windows Server.
"A few days ago, Trend Micro got wind of a .DLL worm detected as WORM_DOWNAD.A that exploits the MS08-067 vulnerability. Its routines have led our security analysts to postulate that it is a key component in the development of a new botnet," said the company.
"Initially thought to be working in conjunction with a Networm variant, WORM_DOWNAD.A is now believed to be an updated version of an attack from the same criminal botnet gang."
Fresh reports suggest that the threat has extended its reach around the globe. "More than 500,000 unique hosts have since been discovered to have fallen victim to this threat," said Trend Micro.
The worm spreads within other malware packages but, once activated, it takes over office networks by exploiting the Microsoft flaw on unpatched systems, allowing it to build up large numbers of infections quickly.
Trend Micro claimed that it has found cases of the worm in the US, China, India, the Middle East, Europe and Latin America, and that several home broadband networks have been infected.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Hands on with the highly anticipated Android 4.0 Ice Cream Sandwich hybrid tablet
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
An Infrastructure Technical Architect is required to...
Managed Services Process's Manager, ITIL V3 Intermediate...
My client is an excellent company within the media industry...
ASP.NET MVC, C# Developer (.NET, C#.NET, dot NET, Web...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Hit by Worm ?
I have twice in the last two days had a Windows virus alert that started loading a programe immediately I switched off. I then did comp check and found 78 registry entries in less than 4hr. all now seems right.
Posted by: W. Lamming 05 Dec 2008