Password-Stealing 'Dorkbot' Worm Prowling Indian Cyberspace: CERT-In

Advertisement
By Press Trust of India | Updated: 2 February 2016 18:02 IST
Cyber-security sleuths have alerted Indian Internet users against the malicious activity of an online virus called 'dorkbot' which perpetrates itself through social networking sites and steals sensitive personal data and passwords of a user.

The malware, a variant of online virus and worm, has been specifically seen affecting operating systems running on Windows in the recent past.

"It has been observed that the variants of malware named as 'dorkbot' targeting windows operating systems, are spreading.

"The malware belongs to the family of worms having backdoor functionality and spreads through various vectors including drive-by-download attacks, social networking sites and compromised websites with browser exploits via removable drives in the form of auto-run exploits or by means of malicious links in instant messaging chats or Internet relay chats," a latest advisory issued by the Computer Emergency Response Team of India (CERT-In) said.

Advertisement

The CERT-In is the nodal agency to combat hacking, phishing and to fortify security-related defences of the Indian Internet domain.

Advertisement

The deadly virus, with almost a dozen aliases, is capable of stealing sensitive information from infected machine including stored passwords, browser data, cookies and has a smart and lethal potential to take complete control of the affected system, it said.

The cyber-security agency said the malware can hide itself by over-writing, can collect system information such as OS (operating system) information, user privileges and apps installed on the system and can act to aid remote access of the infected machine to an attacker.

Advertisement

It destructs and infects a system by acquiring fake identities of Facebook, Skype or any other social media platform and lowers its immunity against a potential virus attack.

"To hide itself from detecting by anti-virus solutions, the malware injects its code into files like cmd.exe, ipconfig.exe, regedit.exe, regsvr32.exe, rundll32.exe, verclsid.exe and explorer.exe," the advisory said.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Cyber security, Dorkbot, Internet
Advertisement

Related Stories

Popular Mobile Brands
  1. iQOO 15R Battery Capacity, Thickness Announced by Company
  2. Realme Buds Air 8 Review: Big on Features, but There's A Catch
  3. Oppo K14x India Launch Date, Key Features Confirmed Ahead of Debut
  4. Samsung Galaxy F70e 5G India Will Launch in India on This Date
  5. UK Watchdog Wants Google to Let Publishers Opt Out of AI Overviews
  6. Samsung Galaxy S26 Could Arrive With This Pixel-Exclusive Calling Feature
  7. Scientists Discover Cosmic Clock in Zircon Crystals That Tracks Earth's Landscape History
  1. Google Disrupts Massive Proxy Network That Hijacked Millions of Smartphones, PCs for Cyberattacks
  2. Samsung Galaxy Watch Ultra 2, Galaxy Watch 9 and Galaxy Tab S12 Series Reportedly Listed on IMEI Database
  3. iQOO 15R Battery Capacity and Thickness Revealed Ahead of Launch in India
  4. Scientists Discover Cosmic Clock in Zircon Crystals That Tracks Earth’s Landscape History
  5. NASA Confirms Axiom Mission 5 Private Astronaut Launch to ISS in Early 2027
  6. Mountain Climbing Indie Game Cairn Sells 200,000 Copies on PC, PS5 in 3 Days
  7. Sony WF-1000XM6 Price, Launch Timeline and Key Specifications Leaked
  8. Vivo Y21 5G and Vivo Y11d Listed on Malaysia's SIRIM Database, Might Launch Soon
  9. UK Watchdog Wants Google to Let Publishers Opt Out of AI Overviews
  10. Budget 2026: Government Proposes Penalties for Inaccurate Reporting of Crypto Assets
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.