You are here: silicon.com > Comment & Analysis

Comment & Analysis

Friendly viruses? Pull the other one

A worm is a worm is a worm... end of story

Tags: jack clark, variant, sobig, msblast

By silicon.com

Published: 19 August 2003 16:45 BST

It's either benevolence on an unprecedented scale or the latest development in social engineering - a virus which offers to fix your existing vulnerabilities.

In truth it is almost certain to be the latter - the latest ploy by virus writers to gain access to a user's machine. In the past we have seen people offering smutty pictures or exclusive spy snaps during the war in Iraq. This time it is just a different offer but the underlying reason is the same. Virus writers just need to keep finding new ways of encouraging users to open their attachments.

Jack Clark, product marketing manager at McAfee, today told us: "This worm offers to patch the vulnerability left by Microsoft - almost making the virus seem like a good idea, only as a user it really isn't a good idea to leave your patching to a virus. Nobody should want to be infected by a worm - even one that offers to fix a problem. Users shouldn't be inviting unauthorised traffic onto their machines."

The fact that this worm makes good on its offer and does download the fix is neither here nor there.

Users should certainly not trust a worm to fix a flaw because they can't vouch for the source and they can't have any idea what else it will do while to their machines.

In some respects it's like hiring a burglar (and not even a reformed one at that) to fit locks on your windows and then going out and leaving them to it. Sure, he may well do a responsible job fitting the locks, but he may well help himself to your TV, video and PC on his way out.

More relevant still is the argument about anti-virus companies and security companies hiring known hackers and virus writers. The association they have created for themselves through illegal activity means there should be an inherent distrust of the subsequent work in that field.

Don't open it.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
2nd Line Support- Break/fix engineer

Key skills: - Experience of Break/fix - Microsoft Office -Windows XP - Dell -Good people skills, articulate. My client based in Manchester urgently ...

IT Systems Manager - Newtown - 40k - 50k

My client would expect the candidate to have practical, relevant skills and experience in the following areas: - Windows based servers (Windows 2003 ...

Software Support Engineer (FIX)- Financial Software- LONDON 35k +

FIX Software Support Engineer required to join a leading financial traders based across the globe. You will support over 100 clients on the ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: