Malware EULA - Copyright on Virus Code ?Best Security Tips offers daily news, information, advices and tips about spyware, adware, viruses, trojans, web vulnerabilities, hackers, other threats    | Register now | Login
   
HOME TIPS NEWS TOOLS DOWNLOADS VIRUS & SPYWARE FORUM BOOKS SECURITY BLOG SITEMAP
GFI LANguard Network Security Scanner - Dld 30-day trial! del.icio.us  digg  Furl  NewsVine  Spurl  Blinklist  Ma.gnolia  Reddit  Tailrank  YahooMyWeb 
Best Tips
Security Scanner
Security Categories
Web Security Scanner
Latest Viruses / Threats
Downloads
RSS / Atom Feeds
Adware - Spyware : Malware EULA - Copyright on Virus Code ?
Posted by Max on 2008/5/2 5:19:28 (142 reads)
Adware - Spyware

Even criminal hackers want to protect their intellectual property, and they've come up with a method akin to copyrighting — with an appropriate dash of Internet thuggery thrown in.

Professional virus writers are now selling a suite of software on the Internet with an unusual attachment: a detailed licensing agreement that promises penalties for redistributing the malicious code without permission.

"I just kind of chuckled — it's kind of humorous," said Zulfikar Ramzan, senior principal security researcher with Symantec Corp.

Symantec researchers noticed a Russian-language example floating around the Internet and wrote about it on the company's official blog this week. They said it's the only example they've seen.

The software is used to infect computers and control them remotely. The zombie machines can be used to pump out spam, launch more attacks or steal personal information from their owners.

Networks of zombie machines — known as "bot nets" — can be extremely lucrative, sometimes bringing millions of dollars in profit for their authors and their distributors. To maximize that profit, the software analyzed by Symantec's researchers contained the following rules:

_The customer can't resell the product, examine its underlying coding, use it to control other bot nets or submit it to antivirus companies and agrees to pay the seller a fee for product updates.

_The threat: Violate the terms, and we'll report you ourselves to the antivirus companies by giving them information about how to dismantle your bot network or prevent it from growing bigger.

While not legally binding, the terms amount to a novel way to protect ill-gotten profits — except that by ratting out their customers, malware authors risk drawing attention to their own enterprises and giving antivirus makers clues on combatting them.

"We know they can't actually enforce it, and they probably wouldn't try," Ramzan said. "What's funny is they put more effort into their EULA (end-user license agreement) than traditional software companies might."

The ultimate rub? Apparently the threat was not only hollow but unheeded. Symantec said the program that's accompanied by the novel rules is being traded freely online — and so far its authors haven't called Symantec to make good on their threat.

Source : AP




Other articles
2008/5/14 15:09:41 - Sourcefire Protects Users from Latest Microsoft Windows Vulnerabilities
2008/5/14 14:21:22 - Join Webinar on Open Source Code Security
2008/5/9 3:36:44 - Check Point Earns VB100 Virus Bulletin Award
2008/5/9 3:28:44 - McAfee Partners with Yahoo! to Offer Safe Search
2008/5/9 3:12:32 - The Hacking of US Department of Homeland Security's Website

The comments are owned by the poster. We aren't responsible for their content.