Experts warn of new hacking tool

Security experts have warned of a new release of the infamous SubSeven backdoor program, just hours after the appearance of a new version of the program that spawned the Kournikova virus.

James Middleton

Security experts have warned of a new release of the infamous SubSeven backdoor program, just hours after the appearance of a new version of the program that spawned the Kournikova virus.

Late yesterday, security professionals were warning of the increased risk of virus activity that could be brought on by version 2 of the Visual Basic Script Worm Generator. Today, version 2.2 of the SubSeven hacking tool made an appearance.

Advertisement

Security firm Internet Security Systems (ISS) said that the new version makes it much easier for "a malicious user to access your computer system without your knowledge or consent". The company also warned that an attacker could use this backdoor as a remote control and carry out activities as a local user.

ISS said SubSeven is a powerful backdoor program, mostly used against Windows systems. It allows an attacker to retrieve saved and cached passwords, modify the system registry, and upload, download and delete files from a system.

The new version also features SOCKS4/SOCKS5 Proxy Support, which enables an attacker to disguise their identity by connecting from an alternate IP address.

SubSeven also includes a packet sniffer that collects network traffic, such as passwords, and has the ability to connect to a random port every time it is started, making it harder to detect.

SubSeven 2.2 has expanded its notification capabilities, letting the intruder know that a machine is infected through IRC (internet relay chat), ICQ and email as well as being able to log keystrokes and send them via email.

One of the more dangerous capabilities, as pointed out by ISS, is its ability to use common gateway interface scripts, effectively allowing the program to be used as a denial of service tool.

Hackers can trade the IP addresses of infected machines and then use a number of them in a co-ordinated attack on another server.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Hacking

2001: A Hacker's Odyssey

Hacking tool comes back for the Mac

Sub7 Trojan returns, but authors claim it's just a 'remote control utility'.

Bug Watch: Is cyber-crime above the law?

Last week week an updated version of the virus kit used to set forth Anna was detected. The first Anna kit virus, created by selecting a couple of boxes and clicking the generate button, was utilised in a couple of minutes by a teenager needing no previous knowledge of virus programming.

Christmas virus springs back into action

In a week of re-releases of malicious tools, such as the Visual Basic Script Worm Generator and backdoor tool SubSeven, the hardware-destroying W32.Kriz virus has also made a comeback.

Related whitepapers

Related jobs

Most watched

Xperia X1

Video Review: Sony Ericsson Xperia X1

First Looks Editor Ian Williams gets hands on with the Sony Ericsson Xperia X1

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

IT white papers

Search white papers

Top categories

Poll

Poll: Summer smartphones

Poll: Summer smartphones

Which smartphone will you be taking to the beach this summer?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

Top 10 IT thrillers

Off-the-wall innovations that make life as easy as 1-2-3

Windows logo

What does Windows 7 mean for Microsoft?

With the sting of Vista still fresh, Redmond has to...

david cameron

V3.co.uk weekly debrief, 10 July 09

This week Conservative Party plans for decentralised data storage and...

Small office

SME tech sales tough despite projected success

Midmarket organisations still tend to rely on manual processes

Primary Navigation