Help! I've Been Web-Jacked
PCWorld.com at Yahoo - Help! I've Been Web-Jacked: "On December 22, an Internet investigator got a tip that child pornography was being housed on an adult Web site. When he visited the site to verify the information, he didn't find any illegal images. But what he did find was a Trojan horse that disabled the ActiveX security controls on his browser and took control of it.
'I heard my hard drive churning and clicked on my task manager and saw three executable programs were installing themselves,' says Chris Brandon of Brandon Internet Services. 'I knew I was in trouble when I couldn't get my task manager to cancel the programs.'
By the time he checked his registry, the Trojan had installed dozens of programs that replaced the default Web page with its own, and loaded its own IP addresses in his favorite places, short cuts and safe zones. When he tried to erase the programs and reboot the machine, the virus reinstalled.
Spyware Spreads
This program is a perfect example of spyware gone amok.
It installed itself by taking advantage of a vulnerability in Internet Explorer 4.x and 5.x that lets an unsigned applet to create and use ActiveX controls. Then it hijacked Brandon's browser, a term called 'Web-jacking.' But it could have been worse. Some variants evoke dialers to call up 1-900 numbers if the victim is using telephone dialup for Internet access.
'We're seeing more of this type of virus activity in recent months,' says Ken Dunham, director of malicious code for IDefense, a security intelligence firm in Reston, Virginia. 'Trojans promote going to certain pornography sites and other sites they affiliate with because they get money for the clicks from advertisers. They terminate regedit.exe [registry editor], and they can be very difficult to remove.'"
Spyware and adware are rivaling viruses as online pests, but not only consumers are concerned: Vendors and ISPs, who field the brunt of complaints, are gearing up for a fight.
"In the past 8 months we've counted 40 million incidents of nonviral 'malware' and since March, 11.4 million cases have been detected," said Bryson Gordon, senior manager in charge of antivirus vendor McAfee's line of consumer products and services. Like many antivirus vendors, McAfee has added spyware protection. "With 4.2 million Web dialers, nonviral threats are very serious concerns for consumers."

