Feeds

Porn spam flood swamps Usenet

Trojan frustrates users of security groups

  • alert
  • submit to reddit

Providing a secure and efficient Helpdesk

A Windows-based Trojan horse program has swamped Internet discussion groups, including a forum for discussing computer viruses, with child pornography ads.

Called NewsFlood, the program is responsible for a form of denial of service attack targeted at Usenet discussion forums.

According to antivirus firm Sophos, NewsFlood connects to the news server at news.hispeed.ch and continually posts messages about child pornography to one of 11 Usenet newsgroups, including: alt.2600; lt.hackers.malicious; alt.comp.virus; alt.religion.scientology; and (strangely)alt.binaries.pictures.asparagus.

Satirically/hypocritically Newsflood also posts messages to news.admin.net-abuse.usenet, a group dedicated to stamping out online abuse.

When posting messages the Trojan horse uses a variety of From: and Subject: headers.

Antivirus firms describe the Trojan as low risk because it appears to be spreading slowly and because it is not particularly damaging. But it has still proved to be an unwelcome nuisance. Nonetheless vendors have announced plans to update antivirus software to detect the bug.

Graham Cluley, senior technology consultant for Sophos Anti-Virus, said the Trojan is not a big problem, because most Usenet readers allow the ability to filter messages. But it does mean "newsgroups were even more full of junk than usual".

Stephen Gielda, president of security information company PacketDerm LLC, told Wired that code for the Trojan contained no indication of its origin.

Jesus Sardinas, who runs GlobalPix, one of the pornography sites the Trojan promotes, denied any connection to NewsFlood's author. He also told Wired his service does not provide child pornography. ®

External Links

Write up on NewsFlood by Sophos
Wired: Anti-Virus Board Gets Sick

Choosing a cloud hosting partner with confidence

More from The Register

next story
SMASH the Bash bug! Apple and Red Hat scramble for patch batches
'Applying multiple security updates is extremely difficult'
Shellshock: 'Larger scale attack' on its way, warn securo-bods
Not just web servers under threat - though TENS of THOUSANDS have been hit
Apple's new iPhone 6 vulnerable to last year's TouchID fingerprint hack
But unsophisticated thieves need not attempt this trick
Hackers thrash Bash Shellshock bug: World races to cover hole
Update your gear now to avoid early attacks hitting the web
Oracle SHELLSHOCKER - data titan lists unpatchables
Database kingpin lists 32 products that can't be patched (yet) as GNU fixes second vuln
Who.is does the Harlem Shake
Blame it on LOLing XSS terroristas
Researchers tell black hats: 'YOU'RE SOOO PREDICTABLE'
Want to register that domain? We're way ahead of you.
Stunned by Shellshock Bash bug? Patch all you can – or be punished
UK data watchdog rolls up its sleeves, polishes truncheon
prev story

Whitepapers

A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Beginner's guide to SSL certificates
De-mystify the technology involved and give you the information you need to make the best decision when considering your online security options.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.