New Worm Sniffs for Paypal Information

CYBERSPACE – A new worm variant identified last week that targets Microsoft products also includes a new feature rarely seen in worms – it monitors network traffic searching for passwords and Paypal account information, according to network security firm Trend Micro.

Identified Sept. 8, the new variant of the SDBot Worm takes advantage of vulnerabilities in Microsoft operating systems and installs a Trojan horse that potentially allows an attacker to gain access to systems, as well as a network packet sniffer that searches for words like, “login,” “auth,” and “paypal.”

"If the Trojans described by Trend can successfully transmit the filter’s packet captures back to the owner they are going to cause problems well beyond typical bot infestation issues,” said Patrick Nolan of the Internet Storm Center, an organization devoted to analyzing Internet worms.

Designated SDBot.UH or “Bling.exe,” because of the filename under which it spreads itself, the worm employs a variety of transmission mechanisms and allows attackers to connect to infected machines, execute files, delete security logs and even watch users if they have a webcam attached to their computer.

Trend Micro warns that the worm can also perform distributed Denial of Service attacks against random IP addresses and attempts to steal CD authorization keys for computer games.

Network sniffers, usually employed by network administrators to diagnose problems, can also be illicitly installed and used to monitor information that travels through the network.

Rich Miller of British internet services company Netcraft says that although sniffers are notoriously hard to detect because they gather information instead of transmitting it, a few programs exist that can alert users to someone listening in on their electronic transmissions.

Trend Micro notes that the new SDBot variant uses the carnivore network sniffer, originally developed by the FBI to monitor suspects’ email. Trend is also reporting that the amount of computers infected by the new variant is low, but both the damage and distribution potential are high.

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Online Child Protection Hearing to Include Federal AV Bill

A House subcommittee will hold a hearing next week on a slate of bills aimed at protecting minors online, including the SCREEN Act, which would make site-based age verification of users seeking to access adult content federal law.

Industry Photographer, 'Payout' Founder Mike B Passes Away

Longtime industry photographer and publisher Michael Bartholomey, known widely as Mike B, passed away Saturday.

FSC Announces 2025 Board of Directors Election Nominees

The Free Speech Coalition (FSC) has announced the nominees for its 2025 Board of Directors election.

AdultHTML Launches Black Friday Web Design, Development Promo

AdultHTML has launched its annual Black Friday/Cyber Monday promo for web design and development, running through Dec. 5.

Canada Exempts Online Adult Content From 'CanCon' Quotas

The Canadian Radio-television and Telecommunications Commission (CRTC) has updated its broadcasting regulatory policies, exempting streaming adult content from “made in Canada” requirements that apply to other online material.

Creator Law Firm 'OnlyFirm' Launches

Entertainment attorney Alex Lonstein has officially launched OnlyFirm.com for creators.

German Court Puts Pornhub, YouPorn 'Network Ban' on Hold

The Administrative Court of Düsseldorf has temporarily blocked the State Media Authority of North Rhine-Westphalia (LfM) from forcing telecom providers to cut off access to Aylo-owned adult sites Pornhub and YouPorn.

FSC: NC Law Invalidating Model Contracts Takes Effect December 1

The Free Speech Coalition (FSC) announced today that North Carolina's Prevent Exploitation of Women and Minors Act goes into effect on December 1.The announcement follows:

Ofcom Investigates More Sites in Wake of AV Traffic Shifts

U.K. media regulator Ofcom has launched investigations into 20 more adult sites as part of its age assurance enforcement program under the Online Safety Act.

MintStars Launches Debit Card for Creators

MintStars has launched its MintStars Creator Card, powered by Payy.

Show More