Glieder (Win32.Glieder.AK), Fantibag (Win32.Fantibag.A) and Mitglieder (Win32.Mitglieder.CT) are not names of a modern day version of The Three Musketeers. These are Trojans engineered for a hacker attack that will infect computers and open them for use in further attacks.
"Combating computer viruses is essentially a game of hide and seek," says Govind Rammurthy, CEO, MicroWorld Technologies, among the leading Security Solutions providers. "Hackers riding piggyback on viruses have only a short window of opportunity to maximize their gain before the viruses are detected, neutralized and logged into Virus Definition databases, 'vaccinating' the system against those strains.
Without continuing system vulnerability caused by virus infection there is little they can do to further their malicious ends like stealing personal information, credit card details and other sensitive and vital data. To achieve their ends they need to keep the system vulnerability going for more time. This co-ordinated Trojan threat is an attempt to the keep that 'backdoor' open, essentially buying time," he concludes.
Of the three, Glieder leads the initial charge. It sneaks past anti-virus protection to download and execute files from a long, hard-coded list of URLs and "plant" the infected machine with "hooks" for future use. On Windows 2000 and Windows XP machines, it attempts to stop and disable the Internet Connection Firewall and the Security Center service (introduced with Windows XP Service Pack 2). Then the Trojan accesses the URL list to download Fantibag. The way is now paved to launch the second stage of attack.
Sulabh, a tester with MicroWorld Technologies says of Fantibag, "Now Fantibag goes about attacking the networking feature of the infected system to prevent it from communicating with anti-virus firms and denying access to the Microsoft Windows Update site. It closes your escape route by making it impossible to download an anti-virus solution and any subsequent Windows security patch to your system. Effectively it helps Mitglieder (the third stage Trojan) open the 'backdoor' by shutting the other doors on you."
Mitglieder puts the system under complete control of the attacker by opening the 'backdoor' on a port using which the attacker can update the Trojan, to stay a step ahead of attempts to remove it, download and execute files, initiate an SMTP server to relay spam, execute files on the infected computer and download and execute files via an URL. "This is what makes it scary," say Aarti, Assistant Manager, QA, MicroWorld Technologies. "The fact that the system can now be used as a remote controlled 'soldier' (bot) in an army (botnet) of similarly compromised machines to launch criminally motivated attacks, causing harm to Internet users."
Botnets thus formed can among other things, use your machine to launch Distributed Denial of service attacks which overload servers, making them crash, to send out spam, spread new Malware, plant Keylogger to retrieve your personal information like identity, passwords, account numbers etc., install Spyware, manipulate online polls/games, abuse programs like Google AdSense to cheat advertisers of revenue, and install Advertisement Addons for financial gain as in fake websites advertising services that don't exist.
"Botnets can even encompass over 50,000 host machines. The potential for mischief is huge," reflects Govind Rammurthy. "Such a three-pronged Trojan attack where attackers change their virus code and release viruses quickly to bypass virus signature scanners, then disable network access to deny the user link-ups to anti-virus and Microsoft Windows Update site for protection has huge significance for virus-signature based protection. It is a sign of things to come," he says, remembering the scramble at MicroWorld labs to update their products to detect and remove the three Trojans.
Anti-virus updates for the three-pronged Trojan threat are available at MicroWorld Technologies site. Maybe the time for worrying about some pimply teenager turning out malicious code because they have nothing better to do on a nice sunny morning, is over. The world could be facing a determined organized crime syndicate who'll stop at nothing to get what they want - information precious to you.
MicroWorld Technologies is one of the leading solution providers for Information Technology, Content Security and Communications Software. MicroWorld has established itself as a leader in providing content security, anti-virus and corporate communications software solutions.
![]() |
|
![]() |
|
![]() |
|
![]() |
It has been said that with the wealth of information,... Read More
Can You Prevent Spyware, Worms, Trojans, Viruses, ... To Work... Read More
What is Phishing? Phishing is a relatively newly coined term... Read More
From the "Ask Booster" column in the June 17, 2005... Read More
If you run any type of Internet business, Adware and... Read More
Nobody wants to pay to remove spyware. At the very... Read More
With the advent of the World Wide Web, a whole... Read More
Computer infections can be broken up into 4 main categories... Read More
1. Importance of a Virus Scanner: A Antivirus program can... Read More
May. 16th 2005 - MicroWorld has reported the discovery of... Read More
There is nothing more important that password security in world... Read More
The Internet is a vast International Network of people and... Read More
Every single time you access a website, you leave tracks.... Read More
You may not realize it, but as you are surfing... Read More
You can detect spyware online using free spyware cleaners and... Read More
Working from home has its advantages, including no commute, a... Read More
By browsing a web page, you could infect your computer... Read More
Saturday, MasterCard blamed a vendor of ALL credit card providers... Read More
Have you seen the web site, www.freestuff.com? Or have you... Read More
A little bit of time invested into learning about internet... Read More
Have you ever bought a product or service from the... Read More
The words Corporate Security may conjure up images of a... Read More
Nowadays more and more people are using a computer. A... Read More
Identity theft ? also known as ID theft, identity fraud... Read More
The Federal Bureau of Investigation has identified "phishing" as the... Read More
If you are wondering how to fight spyware for safe... Read More
If you have used a Windows machine for a while,... Read More
History and BackgroundThe virus was one of the first ever... Read More
These six ways to prevent identity theft offer you valuable... Read More
I am in the midst of Oscar Wilde's The Picture... Read More
This is the second in a series of articles highlighting... Read More
The movie Little Black Book features a young woman, Stacy,... Read More
The average computer is packed with hidden software that can... Read More
Did you know...? 1 in 5 children who use computer... Read More
Phishing is the act of some individual sending an email... Read More
A friend called me one day and asked if I... Read More
WHAT IS HACKING?Hacking, sometimes known as "computer crime" has only... Read More
May. 16th 2005 - MicroWorld has reported the discovery of... Read More
Internet is the ocean of knowledge. In this ocean you... Read More
The Internet is a vast International Network of people and... Read More
Watching how the traditional media covers the latest virus or... Read More
At this point, if you've got the whole "turning the... Read More
The Loss Prevention Manager should be receptive to the needs... Read More
Adware. Spyware. Pesky pop up ads. Internet congestion. Computer malfunctions... Read More
Glieder (Win32.Glieder.AK), Fantibag (Win32.Fantibag.A) and Mitglieder (Win32.Mitglieder.CT) are not names... Read More
Well, this is an article I never thought I would... Read More
Having a good Spyware eliminator on your computer is vital... Read More
Before we start, I want to make it clear that... Read More
There has not been a time in the history of... Read More
This is the second in a series of articles highlighting... Read More
When it comes to reporting Internet scams most of us... Read More
It seems that nowadays cybercriminals prefer cash to fun. That... Read More
Spyware, viruses and worms... oh my!If you are connected to... Read More
Electronic Fraud and Identity Theft Human beings are pretty... Read More
Imagine my surprise when I received a phone call from... Read More
If spyware were a person and he set himself up... Read More
In the past I've never really paid much attention to... Read More
Despite the current wave of identity theft and corporate security... Read More
Monday morning, 6am; the electric rooster is telling you it's... Read More
There are folks out there who use their powers for... Read More
Can you protect your computer from all possible viruses and... Read More
Some months ago, before there was much publicity regarding phishing... Read More
Scams involving email continue to plague consumers across America, indeed... Read More
1. Importance of a Virus Scanner: A Antivirus program can... Read More
Internet scams and frauds are on the rise! The quantity... Read More
Security leaks can be a big problem for any site... Read More
Internet Security |