Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
New SubSeven Trojan unleashed
Kevin Poulsen, SecurityFocus 2001-03-13

SubSeven 2.2 makes Back Orifice look tame.

Comments Mode:
You are not 'safe' 2001-03-13
Anonymous
Behind of firewall. 2001-03-13
marceloreyes (at) netscape (dot) net [email concealed] (3 replies)
Behind of firewall. 2001-03-14
Someone (2 replies)
Behind of firewall. 2001-03-15
youps (at) hotmail (dot) com [email concealed] (1 replies)
Behind of firewall. 2001-03-16
mailsander (at) gmx.net (dot) no-s [email concealed]pam (1 replies)
Behind of firewall. 2001-03-16
Futien
Behind of firewall. 2001-03-25
Metallist
Behind of firewall. 2001-03-22
Karmic Resonance
Re: Behind of firewall. 2007-04-20
Anonymous
Safe? 2001-03-14
FS
Subseven 2.2 IS NOT A REMOTE ADMINISTRATION TOOL!!! 2001-03-14
David Mills (1 replies)
The "New SubSeven Trojan unleashed" mentions the use of subseven as a remote administration tool - this is NOT a good idea as it leaves a nasty security backdoor even if a password is assigned - allowing the author of Subseven 2.2 (Aka mobman) + anyone else who knows a so called "master password" to freely access the computer.

Plus - a number of users have suggested installing the subseven with a password, to prevent anyone else installing subseven or accessing their computer - as above this is a bad idea as it leaves security loop holes........

As to virus checkers....well it will be difficult to find a definitive way of identifying subseven 2.2 - as it is so configurable - meaning that although you may think you are safe - you may not be!!!

As a general rule only download .exe files from sites you trust (i.e microsoft - well sort of trust anyway!!!) be alert! trust no one on the internet who is pretending to be your friend and offers you strange downloads........

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/171/4906#4906
Subseven 2.2 IS NOT A REMOTE ADMINISTRATION TOOL!!! 2001-03-14
SilenceGold (2 replies)
MASTER PASSWORD? 2001-03-15
Concerned (1 replies)
MASTER PASSWORD? 2001-03-16
CL
not safe 2001-03-15
av
Subseven Startup 2001-03-15
Dark Avenue (4 replies)
Subseven Startup 2001-03-16
cPtHoWdY
Subseven Startup 2001-03-17
Anonymous
Subseven Startup 2001-03-22
dan
Subseven Startup 2001-03-22
Karmic Resonance
You appear a little confused. 2001-03-16
HeLLfiReZ Sub7 Developer
I think I got hit by it... tips for other victims. 2001-03-16
kilonad (at) hotmail (dot) com [email concealed]
however.. 2001-03-18
ahmed rhashad muhammed aleki
Using Sub7 legitimatly 2001-03-19
dafunks (1 replies)
Re: Using Sub7 legitimatly 2007-06-19
Anonymous
sub seven is tame 2001-03-20
The Achtzhen
Sub7 2001-03-21
surferUSA
SubSeven is the Powerhouse. 2001-03-21
C Y B E R C O N







 

Privacy Statement
Copyright 2009, SecurityFocus