Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Spyware Threats

August 27th, 2009, 14:53 GMT · By Catalin Cimpanu

Source Code for Skype Spyware Available for Download

SHARE:

Adjust text size:


Swiss software enginner releases source code of Skype wire-tapping spyware
Enlarge picture
Ruben Unteregger, a 33-year-old software developer from Switzerland, has made public the source code of a trojan that taps into Skype conversations, records all audio data and sends it back to the attacker. This latest development comes after a serious scandal that flamed in 2006 about the usage of a similar Skype wire-tapping piece of software by the German Police.

Mr. Unteregger has released to the public the source code of the Skype trojan, the SkypeTap DLL injector and the source code and binaries of the SkypeTap plugin. An attached photo provided by him shows how the tapping and recording process works.

The entire process is very silent and works without the user's knowledge. The client is infected after the SkypeTrojan bypasses the firewall and antivirus protection, getting saved to the victim's computer (Note: the script that bypasses the victim's firewall will be released to the public at a later date, Mr. Unteregger reports).

Whenever the user opens up the Skype client and initiates a conversation, the virus performs a DLL injection that will allow it to attach itself to the Skype process and record all audio conversations. The recorded audio files are then transformed from a PCM audio format to MP3, encrypted and sent to a storage center on the web.

According to H-Online, in the fall of 2006, after an article publicized in the Swiss newspaper “Sonntagszeitung” about a similar program that tapped inside Skype conversations, the Department of Environment, Transport and Communications investigated the ERA IT company that supposedly created the software.

In an interview published on the Gulli website, Ruben Unteregger admitted working for that company from 2001 till 2008. “From 2001 till 2008 I was working for ERA IT and was mainly primarily appointed to customer projects in the private sector enterprise. There was a normal employee/employer-relationship between me and ERA IT,” Mr. Unteregger said.

Riccardo Gubser, ERA IT representative, was cited by the H-Online as saying:”the know-how for this development (malware) was introduced to the company by R.U. and it disappeared with his exit from the company.”

For security reasons, Softpedia will not link to the website where the spyware is being hosted, nor disclose its name.

Skype Wire Tapping Process
Enlarge picture
SkypeTap packet builder configuration screenshot
Enlarge picture



TELL US WHAT YOU THINK:

5,024 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Hundreds of Skype Accounts Hacked

Skype 3.6.0.216 for Microsoft Windows Is Vulnerable

Skype May Have a Back Door

Skype Defender Stealing Your Passwords

Deleting Your Skype Account Is Not an Option

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM