 |
|
|
|
|
|
|
|
Named as Chatosky by Symantec, the new worm spreads itself using Skype text messages. The worm’s cycle begins with users receiving a text message with a file called sp.exe. According to Websense, when that file is run, it installs a password stealing Trojan. The worm then begins to spread itself again using Skype as its means of transportation.
In order to collect additional code, the Trojan attempts to contact a now-disabled remote server.
The original infections of the worm seem to have been in the Asia Pacific region. Korea has been heavily hit by the virus.
|
|
|
|
|
|
|
|
 |
 |