Anti-virus vendor Sophos has discovered a worm that attempts to send a photograph of an owl to attached network printers.
The W32/Hoots-A worm is written in Visual Basic, spreading via network shares. When it infects a computer it attempts to send a graphical image of an owl with the legend "O RLY?" to a number of predefined print queues.
The phrase "O RLY?" is internet slang for "Oh really?", and is often accompanied by a picture of a snowy white owl.
Graham Cluley, senior technology consultant for Sophos said this wasn’t the work of a professional virus writer.
“Most malware authors these days encrypt their executables with packers in an attempt to make them harder to detect, this one does not. It is also written in Visual Basic, which is unusual for a virus today,” he said.
However the worm was hard-coded within and targets a specific network path to almost 40 different printers.
"It appears this malware was written for a specific organisation, by someone who had inside knowledge of their IT infrastructure," said Cluley.
Sophos discovers hooting virus
By
Staff Writers
on May 12, 2006 10:47AM
Got a news tip for our journalists? Share it with us anonymously here.
Partner Content

How NinjaOne Is Supporting The Channel As It Builds An Innovative Global Partner Program

Channel can help lead customers to boosting workplace wellbeing with professional headsets

Kaseya Dattocon APAC 2024 is Back

Secure, integrated platforms enable MSPs to focus bringing powerful solutions to customers
Ingram Micro Ushers in the Age of Ultra
Sponsored Whitepapers

Driving Innovation and Sustainability through Hybrid IT and AI Solutions

Easing the burden of Microsoft CSP management
-1.jpg&w=100&c=1&s=0)
Stop Fraud Before It Starts: A Must-Read Guide for Safer Customer Communications

The Cybersecurity Playbook for Partners in Asia Pacific and Japan

Pulseway Essential Eight Framework