ATTENTION: You are viewing a page formatted for mobile devices; to view the full web page, click HERE.

Other Software > Developer's Corner

Virus targets Borland Delphi

(1/1)

wraith808:
This is something I've not seen before- A virus targeting developers.  Win32/Induc targets Borland Delphi, infecting the IDE so that when you build an application with it, the virus is included in the built .EXE.  The virus has no payload, but it does create a virus nightmare for developers.  I found out about it because GMailKeeper sent out a warning that it carried the virus.

Dear Customers,

This email is here to inform you that you must update your copy of
Gmail Keeper. A old version of Gmail Keeper was infected by a low
risk virus called Win32/Induc A which attaches machines with a
software development tool called Delphi.

Although the infected version of Gmail Keeper can do no harm to your
computer unless you have Borland Delphi V4-7 installed, you are
highly recommended to download the latest clean version of Gmail
Keeper from our Server.

Download Link: http://gmailkeeper.com/download-full-version.php
User name: <redacted>

Password: <redacted>

Note: You'll still need your license key in order to use the full
version of Gmail Keeper.

Details about the low risk virus can be found here
<http://gmailkeeper.com/download-full-version.php>
.

Let us know if you have further questions.

Best Regards,

Gmail Keeper Team

http://GmailKeeper.com

--- End quote ---

I then looked the virus up, and found more information:

http://www.scmagazineuk.com/Anti-virus-vendors-warn-over-Win32Induc-virus-that-attacks-the-Windows-based-development-environment-Delphi/article/146957/

http://www.bitdefender.com/VIRUS-1000528-en--Win32.Induc.A.html

The second is a particularly good read, because it tells how to detect if you have it without running an AV scan.  Note also that this only affects Delphi 4-7.

Navigation

[0] Message Index

Go to full version