On GameFAQs: The Top 10 Literature-Based Games
BNET Business Network:
BNET
TechRepublic
ZDNet

November 19th, 2008

Malware found in Lenovo software package

Posted by Ryan Naraine @ 11:07 am

Categories: Anti Virus, Browsers, Data theft, Malware, Microsoft, Research, Rootkits, Spam and Phishing, Spyware and Adware, Viruses and Worms

Tags: Lenovo Group Ltd., Malware, Microsoft Windows, Spyware, Adware & Malware, Cyberthreats, Microsoft Windows XP, Tools & Techniques, Viruses And Worms, Security, Operating Systems

Malware found in Lenovo ThinkCenter driverComputer maker Lenovo is shipping a malware-infected software package to Windows XP users, according to warning from anti-virus researchers at Microsoft.

The malicious file was identified by Microsoft as Win32/Meredrop, a Trojan dropper that is used to install and execute multiple malicious executables on an infected computer. Other anti-virus vendors are detecting the threat as a ‘hooligan’ virus or a porn dialer. It was found the Lenovo Trust Key software for Windows XP, a digitally signed driver package available to Windows XP SP2 users.

The infected software is used to install the Lenovo Security Logon and the Lenovo Private folder applications for use with the Lenovo Trust Key (also known as Lenovo Insider Key).

[ SEE: Malware-infected USB drives distributed at security conference ]
My sources tell me the Lenovo package contains lots of files, including the one with the embedded malware.  At first glance, the malicious file contains functional, but buggy code and attemps to infect files, spread across the network and USB drives.

Lenovo has been notified and is investigating the issue.

UPDATE: Lenovo has removed the compromised download from its Web site.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 71 Talkback(s)
I think you mean a T-34 very popular with PLA
Vary hardy machine you can beat Westerns about the head with it for hours and still it works. Blood stains just wipe right off.... (Read the rest)
Posted by: Homer111 Posted on: 11/26/08 You are currently: a Guest | | Terms of Use
Just one more reason not to buy Lenovo.  IT_Guy_z | 11/19/08
But...  ShadowGIATL | 11/19/08
I hate to tell you this but the USA makes 1%  Michael L Hereid Sr | 11/19/08
(NT) Would you like some melamine with that? :o)  Jack-Booted EULA | 11/19/08
Now see...  ShadowGIATL | 11/20/08
Make something in America!  newsletters@... | 11/20/08
RE: Make something in America  bfilipiak@... | 11/20/08
Americans are addicted to cheap products...  Marty R. Milette | 11/21/08
No so . . . You pay for what you get.  ZenWarp | 11/23/08
I hate to tell you this but the USA makes 1%  Michael L Hereid Sr | 11/19/08
China  EKRULL8@... | 11/21/08
more China  EKRULL8@... | 11/21/08
china is a capitalist country  jeyost@... | 11/21/08
China is NOT a CAPITALIST country  Homer111 | 11/26/08
You're dreaming...  hasta la Vista, bah-bie | 11/20/08
How amusing.  magallanes | 11/20/08
Built or assembled  aeriform | 11/20/08
I guarantee  zdnet@... | 11/20/08
And it contains *some* Chinese parts... (NT)  hasta la Vista, bah-bie | 11/20/08
The way we are destorying the world...  phatkat | 11/20/08
I never said  ShadowGIATL | 11/20/08
It's not just the "Junk" hardware at Dell...  RS9 | 11/20/08
But..  wizardgdog@... | 11/20/08
If you do business with those that want to kill U  Homer111 | 11/26/08
Amen !!  Oreamnos_americanus | 11/20/08
Amen?!?!?  etherspy | 11/21/08
RE: Malware found in Lenovo software package  jscott418 | 11/19/08
Intel Celeron is kind of like AMD Sempron.  Grayson Peddie | 11/19/08
what's the problem with that?  Rick S._z | 11/20/08
There IS NO problem with that..  Narg | 11/20/08
A Model T CAN be a high performance car..  Wolfie2K3 | 11/20/08
lenovo should stick with Linux  Linux Geek | 11/19/08
Lenevo should close it's doors.  ShadowGIATL | 11/19/08
Ubuntu 8.10  pccoder28@... | 11/21/08
Duh.....  DrDennis69 | 11/21/08
Not removed  forrestgump2000@... | 11/19/08
RE: Malware found in Lenovo software package  varick | 11/20/08
re: What is Lenovo...  Loggies | 11/20/08
While  magallanes | 11/20/08
Must. Pass. Up. The. Urge...  PollyProteus | 11/20/08
what is lenovo? would be nice if you'd explain this stuff......  stalkowski@... | 11/20/08
Let's be polite...  randysmith@... | 11/20/08
Actually...  StillLearnin | 11/20/08
I think you mean a T-34 very popular with PLA  Homer111 | 11/26/08
RE: Malware found in Lenovo software package  stumpmonkey | 11/20/08
RE: Malware found in Lenovo software package  alenzo | 11/20/08
RE: One More Reason  Mr_Wizard | 11/20/08
RE: One More Resaon  jimgerlv@... | 11/20/08
Malware can be silent.  pccoder28@... | 11/21/08
RE: Malware found in Lenovo software package  syem@... | 11/20/08
RE: Malware found in Lenovo software package  CalNativeKid | 11/20/08
RE: Malware found in Lenovo software package  boblinde@... | 11/20/08
RE: Lenovo  woodd47@... | 11/20/08
RE: Malware found in Lenovo software package  aandreano | 11/20/08
RE: Malware found in Lenovo software package  estone25@... | 11/20/08
Malware  gfrnaw@... | 11/20/08
Actually...  Sukey59 | 11/20/08
RE: Malware found in Lenovo software package  snowisred | 11/20/08
I don't think so  snowisred | 11/20/08
I don't think so  wizardgdog@... | 11/20/08
Lenovo  snowisred | 11/20/08
The person responsible has been shot  DXMage | 11/20/08
The person responsible has been shot  wizardgdog@... | 11/20/08
RE: How do I check my system and clean it up? lMalware Software Lenovo  AlexxZD | 11/20/08
Well, that's bye to lenovo from me  padmanabhan939@... | 11/20/08
RE: Malware found in Lenovo software package  eric.diehl@... | 11/21/08
Look on the bright side!  pccoder28@... | 11/21/08
RE: Malware found in Lenovo software package  pccoder28@... | 11/21/08
RE: Malware found in Lenovo software package  dgroszek@... | 11/22/08
RE: Malware found in Lenovo software package  cllark | 11/24/08
I consider all Microsoft products Malware!  as901 | 11/25/08

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

  • Smart Tech Expert advice on innovations in healthcare and the green technologies that make it happen. Find out more
  • Smart Business Discussion and advice on management issues that revolve around making your world smarter and more useful. More Smart Advice
  • Smart People The best and worst moves in the management and strategy trenches. Learn More