OSF.8759

OSF.8759

OSF.8759 is a computer virus that infects ELF binaries on Linux systems.

Design

The virus increases the size of infected files by 8759 bytes, 4662 of which are a backdoor attached at the end of the binary. According to Viruslist.com, the backdoor is designed such that it "is not linked to the ELF structure" so that modified versions of it can be easily incorporated later.[1]

The virus attempts to infect all the files in the current directory recursively and if run from a root account, will try to infect all files in the /bin directory. In any case, no more than 201 files are infected in one run. Moreover the virus avoids infecting the files under /dev, /proc and all the files with a suffix ps such as in maps. The backdoor attempts to listen on UDP port 3049 and provides many internal commands to execute files on the target system. Upon execution, the virus tries to modify the firewall rules so that they do not interfere with the backdoor's operation. It also attempts to evade debugging by spawning a debugger itself. If the virus fails to spawn its own debugger, it assumes that the system already has a running debugger and will terminate its execution immediately.

See also

References



Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать реферат

Look at other dictionaries:

  • OSF.8759 — ist ein Computervirus, der ELF Binärdateien auf Linux Systemen infiziert. Design Der Virus vergrößert die infizierten Dateien um jeweils 8759 Bytes, 4662 davon sind eine Backdoor, die hinten an die Binärdatei angefügt ist. Laut Viruslist.com ist… …   Deutsch Wikipedia

  • Linux malware — includes viruses, trojans, worms and other types of malware that affect the Linux operating system. Linux, Unix and other Unix like computer operating systems are generally regarded as very well protected, but not immune, from computer viruses.… …   Wikipedia

  • Liste des malwares Linux — Les systèmes d exploitation GNU/Linux, Unix et « Unix like » sont en général considérés comme protégés des virus informatiques[1]. En effet, jusqu à présent, aucun virus opérant sous Linux n a été répertorié comme étant très répandu,… …   Wikipédia en Français

  • Вредоносные программы для Unix-подобных систем — Вероятно, первые компьютерные вирусы для семейства ОС Unix были написаны Фредом Коэном в ходе проведения экспериментов. В конце 1980 х появились первые публикации с исходными текстами вирусов на языке sh.[1] …   Википедия

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”