Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > other security issues & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old March 7th, 2002, 10:03 PM
javacool javacool is offline
BrightFort Moderator
 
Join Date: Feb 2002
Posts: 3,881
Default Gator Branded A Trojan Horse Despite Security Fix

The article is available from NewsBytes.com:

http://www.newsbytes.com/news/02/175046.html
__________________

*Official BrightFort Website*
*SpywareBlaster*

*Please note: I am not responsible if any advice herein causes any trouble whatsoever *
  #2  
Old March 7th, 2002, 10:03 PM
javacool javacool is offline
BrightFort Moderator
 
Join Date: Feb 2002
Posts: 3,881
Default Re: Gator Branded A Trojan Horse Despite Security

Couresty NewsBytes.com:
Quote:
Gator Branded A Trojan Horse Despite Security Fix *

By Brian McWilliams, Newsbytes
REDWOOD CITY, CALIFORNIA, U.S.A.,
07 Mar 2002, 3:42 PM CST

Gator Corp. has corrected a security flaw in the Web-based installer program for its popular digital wallet software, but some anti-virus utilities still brand the program a Trojan horse.
Responding to a report in February that the ActiveX installer opened a potential back door for attackers, Gator temporarily removed the program, GatorSetup.exe, from its sites and posted a security update that eliminates the vulnerability for users who have installed the program using the ActiveX control.

Although Gator recently replaced the installer at its site with a version that eliminates the security flaws, the ActiveX program is currently blocked by Symantec's Norton AntiVirus (NAV) software.

According to NAV, the Gator installer is infected with the Backdoor.Trojan virus.

Symantec officials were not immediately available for comment.

According to a description at the Symantec site, "all Trojans that are detected as Backdoor.Trojan have one thing in common: they allow unauthorized access to the infected computer."

A downloadable installer for the Gator software, GatorMiniSetup.exe, did not set off NAV's alarms today.

In a demonstration of the Gator vulnerability last month, a security researcher who uses the nickname "Obscure" created a Web page that automatically installs the Tini remote-control backdoor program on the PC of Gator users who installed the digital wallet using the ActiveX control.

In a statement Feb. 23, Gator Corp. said it would automatically download an updated version of the Gator software to current users.

Although Gator is present on millions of computers, most people do not download the program from the Gator site but instead receive it bundled with other software, the company said.

According to Obscure, some users of Norman Virus Control have reported that the anti-virus software identified the new ActiveX installer as a Trojan.

He said Gator apparently made a number of changes to the installer to prevent hijacking by attackers, including a routine that deletes the installer after the browser window has been closed or the user navigates from the Gator site.

Gator Corp. is a privately held firm whose investors include Garage.com and founders of Sun Microsystems, Symantec and Intuit, according to the company's Web site.

Obscure's advisory is at http://eyeonsecurity.net/advisories/gatorieplugin.htm .

The Gator home page is at http://www.gator.com .

Reported by Newsbytes, http://www.newsbytes.com .

15:42 CST

(20020307/WIRES ONLINE, BUSINESS, PC/HOLE/PHOTO)

__________________

*Official BrightFort Website*
*SpywareBlaster*

*Please note: I am not responsible if any advice herein causes any trouble whatsoever *
  #3  
Old March 7th, 2002, 10:46 PM
UNICRON's Avatar
UNICRON UNICRON is offline
Technical Expert
 
Join Date: Feb 2002
Location: Nanaimo BC Canada
Posts: 1,935
Default Re: Gator Branded A Trojan Horse Despite Security

those Gator people should be ashamed of themselves. No one wants Gator, they practically sneak it onto your machine. A regualr user in W2K can install it, bu tit takes an administrator to get rid of it.(b@stards...) Now it is a security risk no one asked for.

I hate them with a capitol 'H'
__________________
Not every thing that can be counted counts, and not everything that counts can be counted.
 

Wilders Security Forums > Other Security Topics > other security issues & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 09:29 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums