Your PC May Come Pre-Loaded With Malware, Right Out Of The Box

By Alexandra Burlacu | Sep 14, 2012 01:26 PM EDT

Share This Story

  • Print
  • Email

Cybercriminals have taken their battle to the next level and are now infecting computers right before they reach the end-consumers. According to a new Microsoft study, several brand-new computers were carrying malware that were loaded before it reaches a customer or end purchaser. This means that the malware is loaded after the product is shipped by the original equipment manufacturer to a distributor, transporter, or reseller.

Follow us

One virus in particular, called Nitol, is especially dangerous, as it steals personal details to help hackers access online bank accounts. A U.S. court gave Microsoft permission to tackle the network of infected PCs.

In a report detailing its efforts to fight Nitol, Microsoft said that the cybercriminals behind the malware had exploited insecure supply chains to install malicious programs as the PCs were in production. Microsoft discovered the viruses when its team of digital crime investigators bought 20 PCs, 10 desktops and 10 laptops from different cities in China. Although the computers were fresh out of the factory, four of them were infected with malicious programs.

"What's especially disturbing is that the counterfeit software embedded with malware could have entered the chain at any point as a computer travels among companies that transport and resell the computer," Richard Domingues Boscovich, a lawyer for Microsoft's Digital Crimes Unit, wrote in a blog post.

Microsoft set up "Operation b70" to investigate the matter, and discovered that the four viruses were part of counterfeit software which some Chinese PC makers were installing on computers. Nitol was the most dangerous of the viruses Microsoft found. As soon as the computer was turned on, Nitol tried to contact the command and control system set up by its creators to steal data from infected devices.

Further probing found that the botnet behind Nitol was run from a Web domain that had been involved in cybercrime since 2008.That domain also included 70,000 separate sub-domains used by 500 separate strains of malware designed to trick people or steal data.

"We found malware capable of remotely turning on an infected computer's microphone and video camera, potentially giving a cybercriminal eyes and ears into a victim's home or business. Additionally, we found malware that records a person's every key stroke, allowing cybercriminals to steal a victim's personal information," added Boscovich.

"The Nitol botnet malware itself carries out distributed denial of service (DDoS) attacks that are able to cripple large networks by overloading them with internet traffic, and creates hidden access points on the victim's computer to allow even more malware - or anything else for that matter - to be loaded onto an infected computer."

Microsoft has now obtained permission from a U.S. court to seize control of the Web domain, 3322.org, which it found to be involved with the Nitol infections. This way, Microsoft can filter out legitimate data and block any traffic hijacked by malware. The domain's owner, Peng Yong, told the Associated Press (AP) that he was not aware of Microsoft's legal action, but his company had a "zero tolerance" policy regarding illegal activity on the domain.

"Our policy unequivocally opposes the use of any of our domain names for malicious purposes," he told the AP. Peng added, however, that the great number of users it had to monitor made it very difficult to make sure that all activity was legitimate. "We currently have 2.85 million domain names and cannot exclude that individual users might be using domain names for malicious purposes."

Microsoft filed suit in the Virginia District Court to take action against the Nitol botnet as part of its Project MARS program. The court has also given Microsoft an ex parte temporary restraining order against Peng Yong, his company, and others.

"Putting Microsoft in control of the 3322 dot org isn't going to save the world," said Paul Ducklin, an analyst with security firm Sophos. "But it is going to disrupt the control that the crooks currently enjoy over many already-infected PCs, as well as giving some useful intelligence and insight into the Nitol zombie networks. That will probably be handy for law enforcement operations in the future."

Get the Most Popular Mobile&Apps Stories in a Weekly Newsletter

© 2013 Mobile & Apps All rights reserved. Do not reproduce without permission.

Join Our Conversation

Smartphones
ZTE Grand SZTE Grand S Release Date In U.S. Put On Hold Until 2014
Nokia Yet Again Sues HTC Over Patent Infringement
Nexus 4 Rocking Android 4.3 Version Stars In New Photos, Video
HTC Desire 600 Now Official: Quad-Core Mid-Range Smartphone With Beats Audio, BlinkFeed
Tablet / Laptop / PC
Discounted Prices For Refurbished iPad 4Apple Drops Prices On Refurbished iPad Mini, iPad 4 Tablets
Hisense Introduces Sero 7 Tablets With $99 Starting Price To Challenge Nexus 7
Sony Xperia Tablet Z Gets Dunked In A Fishtank, Survives
Samsung Galaxy Tab 3 7.0 Stars In New Video
Gadgets
Google GlassGoogle Glass Is Creepy, Says Early Glass User
Xbox One And PlayStation 4: On The Matter Of Shared And Used Games
Recharge Your Phone In 20 Seconds With This Revolutionary Device
Ouya Will Be At E3 2013, But Not Where You Think
OS / Software
Android 4.3 Jelly BeanNexus 4 Rocking Android 4.3 Version Stars In New Photos, Video
Former Nokia Team Jolla, Announces First Sailfish Powered Smartphone For Asia
Android 4.2.2 Jelly Bean Update For Samsung Galaxy S3 Transform It Into Galaxy S4 (To Some Extent)
iOS 7 To Come With Flickr, Vimeo Integration
Internet / Social Media
FaceTimeAT&T Promises Cellular Video Calls, Mobile Video Chat For All Customers
Flickr Boasts 'Spectacular' Redesign, Offers A Whopping 1TB Of FREE Storage
Download 40 GB In A Second: Researchers Set Up World's Fastest Wi-Fi Network In Germany
YouTube Shoppable Videos - Will Google Hit A New Jackpot?
What's App
NBA Jam Windows PhoneTiger Woods 12 and NBA Jam Are The Latest EA Sports Games To Come Exclusive To Nokia Lumia
Microsoft YouTube App For Windows Phone Still Up And Running Despite Google Takedown Notice
Pandora Updates Web And Mobile Apps With Easier Facebook Sharing
Nokia Launched LiveSight For HERE Maps On Windows Phone 8

DON'T MISS

Galaxy Tab 3
Samsung Galaxy Tab 3 7.0 Stars In New Video
Samsung announced its new Galaxy Tab 3 7.0 Android Jelly Bean tablet at the end of April, but a new
Huawei Ascend Mate
Nokia And Huawei Working On 6-Inch Phablets, Claim Report
Phablets have become popular due to the Samsung Galaxy Note line of devices, so it is no surprise
Nokia Carl Zeiss Optics
Nokia To Unleash Lumia EOS Smartphone With 41-Megapixel Camera In July
The world's best camera phone is almost here, as the Nokia Lumia 'EOS' will reportedly launch in
Hisense Sero 7 Pro and Sero 7 LT Tablets
Hisense Introduces Sero 7 Tablets With $99 Starting Price To Challenge Nexus 7
Hisense unveiled its new Sero 7 tablets that will likely give the Nexus 7 a run for its money with
Microsoft YouTube App Windows Phone 8
Microsoft YouTube App For Windows Phone Still Up And Running Despite Google Takedown Notice
Breathe a sigh of relief, Windows Phone 8 fanboys, as the YouTube app is still alive and kicking.
Xperia Tablet Z
Sony Xperia Tablet Z Gets Dunked In A Fishtank, Survives
A Sony Xperia Tablet Z user decided to test the tablet's waterproof capabilities by placing it in a

Samsung Galaxy S4 In New Color Options
Samsung Galaxy S4 Sells 10M Units In First Month, More Color Options Coming This Summer
The new Samsung Galaxy S4 flagship smartphone sells faster than any of its predecessors, reaching
Sprint 4G LTE
More BlackBerry Devices On The Way, Says Sprint
If you were left impressed with the major releases from BlackBerry earlier this year viz. BlackBerry
Galaxy S3 Jelly Bean Update
Android 4.2.2 Jelly Bean Update For Samsung Galaxy S3 Transform It Into Galaxy S4 (To Some Extent)
The Android 4.2.2 Jelly Bean firmware for the Samsung Galaxy S3 has been leaked and many users of
LG Optimus GJ
LG Optimus GJ Waterproof Smartphone Now Official, Will Sport $600 Price Tag
LG has just unveiled the Optimus GJ smartphone, its first high-end waterproof handset. Optimus GJ
Copyright © 2013 Mobile & Apps All rights reserved. mobilenapps
Real Time Analytics