How the Downandup Worm works

Tuesday, January 20th, 2009

Biggs is the editor of TechCrunch Gadgets. Biggs has written for the New York Times, InSync, USA Weekend, Popular Mechanics, Popular Science, Money and a number of other outlets on technology and wristwatches. He is the former editor-in-chief of Gizmodo.com and lives in Bay Ridge, Brooklyn. You can Tweet him here and G+ him here. Email him directly at john@techcrunch.com. → Learn More

windows_vista_open_folder_to_view_files

This is pretty interesting: there’s a new worm called Downandup that basically uses social engineering to spread itself.

Take a look at that screenshot. Notice anything weird?

When you insert a USB drive, it usually says something like “Open folder to view files.” Fair enough. But notice that there is a program that says the same thing “published by Microsoft.” That’s the trick. It basically convinces you that its a system action when it’s really an application. Tricksy tricksy.

Sponsored Ads

blog comments powered by Disqus

Sponsored Ads

Sponsored Ads