Worm uses Real Media files to infect

By
Follow google news

McAfee is warning of a new worm that modifies Real Media files and launches a malicious website without a user prompt.


Once the page is open, the worm can spread over network drives and shared files to "download whatever the (malware) author wants to download," Craig Schmugar, threat researcher with McAfee Avert Labs, told SCMagazine.com on Wednesday.

The worm initially infects a user's PC when he or she is duped into downloading an executable that scans the system for RMVB (Real Media Variable Bitrate) files to target, he said.

While McAfee has seen only localised outbreaks of the worm, particularly in the Far East of the US, users should exercise caution when playing seemingly safe video files, Schmugar said. The problem is further exacerbated by the rise of peer-to-peer file sharing.

"The notion is that most computer users might think twice in certain situations, (but) they probably don't think twice when they're playing a video," Schmugar said. "Best computing practices still hold true. Run a desktop firewall program. Run updated anti-virus software. Be careful who you share files with or where you get your files from."

A Real Networks spokesperson told SCMagazine.com today that the company was investigating the reports and was not immediately commenting.


 Click here to email Dan Kaplan.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Tags:

Most Read Articles

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Qld gov says students, staff caught in Canvas cyber incident

Qld gov says students, staff caught in Canvas cyber incident

Medibank reveals attack vector and cost of 2022 security breach

Medibank reveals attack vector and cost of 2022 security breach

Aus universities and TAFEs investigating exposure to Canvas cyber incident

Aus universities and TAFEs investigating exposure to Canvas cyber incident

Log In

  |  Forgot your password?