New trojan in the wild targeting multimedia files

A new trojan in the wild is infecting multimedia files on a victim's hard disk.

Security vendor Secure Computing is warning in an advisory that the initial infection comes from a pirate software site -- known as a warez site -- where users go looking for an illegal crack or serial key to run copy-protected software.

According to the advisory, when attempting to run infected files, the user is fooled into believing a codec is needed to play back the content.

When downloading the fake codec, the user installs malware, which embeds malicious content into multimedia files such as MP3, WMA music files, WMV video files, and others.

Eric Krieger, manager at Secure Computing, said that one of the infected MP3 files includes music from 1970s rock group Queen's Greatest Hits album.

“The bottom line is you shouldn't be looking to download the codec, that's the major thing, and once you have it installed it injects the command and causes the WMP to redirect,” said Krieger.

When the user plays any infected files, no sign of compromise will show up and they will never know they've been infected, warned Secure Computing.

When a user then shares a file via email or a P2P site, those infected multimedia files are then transferred to someone else.

“It's not a Windows issue, it's an MP3 issue and you need to update your anti-virus signature to stay protected," Krieger said. "It's just something that users have to be aware of."

 

Sign up to our newsletters

More in News

Bitcoin mining botnet has become one of the most prevalent cyber threats

Fortinet researchers have tracked 100,000 new ZeroAccess trojan infections per week, making the botnet very lucrative to its owners.

House Intelligence Committee OKs amended version of controversial CISPA

House Intelligence Committee OKs amended version of controversial ...

Despite the 18-to-2 vote in favor of the bill proposal, privacy advocates likely will not be satisfied, considering two key amendments reportedly were shot down.

Judge rules hospital can ask ISP for help in ID'ing alleged hackers

Judge rules hospital can ask ISP for help ...

The case stems from two incidents where at least one individual is accused of accessing the hospital's network to spread "defamatory" messages to employees.