This Site Optimized For Mozilla Suite and FireFox **** Now With AJAX Technology (Trying too..)
  Technology and Virus Information   Home
  my store
  rss feed
  atom feed
All Information You Need about Technology and Virus
Basic Information : || WHAT IS VIRUS ? || WHAT IS SPAM ? || WHAT IS HACKER ? ||

Hot News and Polls

Thursday, July 27, 2006

Spyware Installs Fake Firefox Extension

Trojan installs fake Firefox extension and reports collected data back to its servers

According to Heise Security, computer security software company McAfee has issued a warning that a new Trojan, which disguises itself as a legitimate Firefox extension, is on the loose. The Trojan disguises itself as a legitimate extension called “numberedlinks” that adds numbers to links on web pages. The fake extension then intercepts passwords and credit card information entered in to the browser and sends it to an external server.

McAfee has labeled the Trojan “FormSpy” and considers its ability to widely distribute itself relatively low at this point. The payload is delivered via email as an exe called the AXM Downloader. Once a user opens the attachment, the software then connects to the internet and downloads the extension. It then injects itself directly into the Firefox configuration data completely bypassing the user confirmation dialog box that normally appears when a user installs an extension.

Firefox does have the built in ability to allow extension authors to digitally sign their extensions to help prove the extensions authenticity, however, the feature is underutilized by extension developers. We should also mention that the real numberedlinks extension available from mozdev.org is not associated with the spyware using its name and is completely safe to use. Users can also check what extensions they have installed by going to Tools > Extensions.

0 Comments in Virus and Technology :

Post a Comment

Links to this post:

Create a Link

<< Home

Post a Comment

Name:
Comments:

Add Google results to your message:

Google Search Clippings

Use the Google search box on the right to add search results to your message.

 


Traffic Receiver   Best Advertising
 
Blogger  View My Public Stats on MyBlogLog.com Link Refferal Starting Point Web Blog Pinging Service Google PageRank Checker Tool World Top Blog Active Fashion Make Money Online My Store Bikini Store
Creative Commons License
This work is licensed under a Creative Commons Attribution-NonCommercial-ShareAlike 2.5 License.
FrOm MaRs To EaRtH.....I SeE OnE CoMmOn ThInG.....A DaRk SiDe In EvErY LiViNg CrEaTuReS