September 06, 2008
Home
About
Submit Press Release
PR Firms
Editors/Journalists
Search Archives
 
News Releases by Category  
News by Country  
News by MSA  
All News for Today  
Browse News by Day  
News by Trackbacks  
All Press Releases for June 12, 2005 Subscribe to this News Feed  
 

Poisoned Updates May be the Next Bad Apple in the Spyware Basket

A relative newcomer to the threat arena, update poisoning has the potential to quietly wreak havoc on your PC. Keeping a close watch on your host files is one way to stop this little seed from growing.

(PRWEB) June 12, 2005 -- The infamy of spyware continues with yet another malicious attack on the unsuspecting PC user. This new threat has been identified as update poisoning." By adding entries directly into the hosts file, this spyware breaks through firewalls and other anti-virus protection and poisons update functions by pointing notable DNS (domain name service) names back to other inappropriate IP addresses, according to IT professionals. Any type of desktop application which uses regular updates is at risk, including Windows. States Tom Pimienta, Director of Technology at LogiGuard: I always feared such re-direction might be possible...next thing you know you're downloading what you think are Windows updates but they're not because the website you are downloading from is bogus!" This redirection of updates could wreak havoc on your computer.

This new threat adds yet another harmful application of spyware to the myriad of processes which are used to trick and even defraud innocent users. Update poisoning quietly spawns more spyware that slows and eventually controls your computer. The potential damage that could be caused by this threat is immeasurable because updates are such an important part of PC maintenance. And once contaminated, these infected updates could easily cause multiple headaches which, though not entirely malicious, are still annoying.

Even with firewalls and antivirus programs in place, don't be too confident about the security of your system. Spyware like this could easily slip through the cracks and get under the rug." One way to help you uncover this threat in your system is to employ the netstat command which is a common, built-in tool used by system administrators to aid in intrusion detection. Using this tool may help you to detect ports which appear closed but remain open and vulnerable. Checking out the backside information on your hosts file will assist you in determining where the current activity is happening. Engaging several anti-spyware products to capture and remove spyware such as Microsoft Anti-Spyware, SpyPry by LogiGuard, and Spybot Search and Destroy could be beneficial to maintaining the security of your PC. Reformatting your system once a year or so is not a bad idea, either. It flushes out a lot of minor problems and forces you to update all your programs directly from the known source.    

This sleeper threat needs more in-depth research. Several companies including LogiGuard, have shown an interest in the further development of a solution to this problem. Whether the application will be server-based or system-based or a combination of the two remains in question. The bottom line—update poisoning is a problem which needs to be solved. This spyware is internal and creates a vicious cycle of downloading that may create a slew of other problems, besides bogus updates.

# # #


See the original story at: http://www.prweb.com/releases/2005/06/prweb250260.htm
Email this story to a colleague
Printer Friendly Version
Bookmark with del.icio.us
Bookmark with Y!MyWeb
Submit to Digg
Wendiann Trent
LOGIGUARD LLC
916.912.4108
Email us Here

There are no multimedia files attached to this release. If this is your release you may add images or other multimedia files through your login.

If you have any questions regarding information in these press releases please contact the company listed in the press release. Please do not contact PRWeb. We will be unable to assist you with your inquiry. PRWeb disclaims any content contained in these release. Our complete disclaimer appears here.
 
Disclaimer: If you have any questions regarding information in these press releases please contact the company listed in the press release.
Please do not contact PRWeb®. We will be unable to assist you with your inquiry.
PRWeb® disclaims any content contained in these releases. Our complete disclaimer appears here.

© Copyright 1997-2007, Vocus PRW Holdings, LLC.
Vocus, PRWeb and Publicity Wire are trademarks or registered trademarks of Vocus, Inc. or Vocus PRW Holdings, LLC.

Terms of Service | Privacy Policy | Copyright