First family of Windows Vista viruses unleashed

Published: 5 August 2005 y., Friday

An Austrian hacker earned the dubious distinction of writing what are thought to be the first known viruses for Microsoft's  Windows Vista operating system. Written in July, the viruses take advantage of a new command shell, code-named Monad, that is included in the Windows Vista beta code.

The viruses were published last month in a virus-writing tutorial written for an underground hacker group calling itself the Ready Ranger Liberation Front, and take advantage of security vulnerabilities in the new command shell. Unlike the traditional Windows graphical user interface, which relies heavily on the mouse for navigation, command shells allow users to use powerful text-based commands, much like Windows' predecessor, DOS.

The viruses were written by a hacker calling himself "Second Part To Hell," and published on July 21, just days after Monad was publicly released by Microsoft, according to Mikko Hyppönen, chief research officer with Helsinki's F-Secure Corp. Second Part To Hell is the pseudonym of an Austrian-based hacker who also goes by the name Mario, Hyppönen said.

Because of its sophistication, the new command shell offers new opportunities for hackers, Second Part To Hell wrote in the tutorial, a copy of which was obtained by the IDG News Service. "Monad will be like Linux's BASH (Bourne Again Shell) -- that means a great number of commands and functions," he wrote. "We will be able to make as huge and complex scripts as we do in Linux."

F-Secure has named the virus family Danom (Monad in reverse). After examining the code, Hyppönen said that the Danom family is disruptive, but not capable of causing significant damage to Windows users. "These are proof of concept viruses," he said, "Where virus writers want to break new ground and write the first viruses for a new platform."

Šaltinis: infoworld.com
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.

Facebook Comments

New comment


Captcha

Associated articles

"Goner" Virus Can Use ICQ To Spread

A brand new worm slithering through the Web is getting passed by Microsoft Outlook home and businesses users and is so bad it has the potential of wiping out complete files. more »

Court: U.S. law trumps domain decisions

Decisions by international arbitrators in cybersquatting cases can be challenged in U.S. court, an appeals panel has ruled. more »

Business users victims and villains in Goner outbreak

Business users were the worst offenders in this week's spread of the Goner worm and many firms were slow to update antiviral protection during the outbreak. more »

New Zealand Medical Journal Scraps Paper For Web

Ending 114 years of tradition, one of New Zealand's oldest journals will move entirely to the Web and cease paper publication next year. more »

Internet World Fall 2001 means business

The unrelenting momentum of the Internet as a tool for employing creative and cost-effective new ways of doing business will be the driving theme of next week's Internet World Fall 2001 trade show in New York. more »

PCs Still Rule the E-Commerce Roost

According to research from GartnerG2, as much as 10 percent of the B2C e-commerce transactions in the United States will be done through devices other than the PC by 2005. more »

Mobile Commerce World: Mobiles outstrip landline usage in Sweden

There are now more active mobile-phone users than landline telephone users in Sweden. more »

The first victims

Philippine Hackers Deface Sites To 'Expose Flaws' more »

Memo details Microsoft response in EU case

Microsoft denied European Union (EU) allegations that it violated antitrust rules and misused its dominance of the computer industry. more »

Opera 6.0 for Windows Released

Opera Software has officially released Opera 6.0 for Windows. more »