Feeds

First 64-bit Windows virus sighted

Rugrat poses no immediate risk

  • alert
  • submit to reddit

Choosing a cloud hosting partner with confidence

Anti-virus researchers at Symantec yesterday spotted the first virus capable of infecting 64-bit Windows systems.

Rugrat was created to prove a point rather than to be released into the wild. The proof-of-concept virus poses no immediate risk to Itanic users, but as the population of IA64 systems grows that risk of 64-bit worms will also increase. The virus is also capable of infecting 32-bit computers running 64-bit emulation software.

Symantec explains that Rugrat uses an unusual method "Thread Local Storage" structures to execute malicious code. The virus is capable of infecting files that are in the same folder as it and in any subfolders. "W64.Rugrat.3344 is a fairly simple proof-of-concept virus. However, it is the first known virus to attack 64-bit Windows executables on IA64 systems intentionally, and it does so successfully," the company explains. It adds that Rugrat uses a small number of Win64 API's from three different libraries to avoid crashing systems during infections.

The author of Rugrat has also created a number of other proof-of-concept viruses (the Chiton strain), according to Symantec. ®

Related stories

First Palm virus isolated (low-risk malware)
Transmeta pledges 'no execute' security support
Exploit Code on Trial

Beginner's guide to SSL certificates

Whitepapers

Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Win a year’s supply of chocolate
There is no techie angle to this competition so we're not going to pretend there is, but everyone loves chocolate so who cares.
Why cloud backup?
Combining the latest advancements in disk-based backup with secure, integrated, cloud technologies offer organizations fast and assured recovery of their critical enterprise data.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Saudi Petroleum chooses Tegile storage solution
A storage solution that addresses company growth and performance for business-critical applications of caseware archive and search along with other key operational systems.