Slashdot Mirror


Running Windows Viruses Under Linux

ResQuad writes "Everyone loves Windows viruses, right? Well, the crazy people over at NewsForge (owned by the same people that own Slashdot) decided to try running Windows viruses with Wine. So next time you receive an email virus, strike up Wine and see what you can do (or not)."

16 of 361 comments (clear)

  1. Wine is not an Emulator. by wot.narg · · Score: 5, Insightful

    Lets see just how non emulator wine is... If the virii own it, its an emulator, if not, its telling the truth.

    Bwhahahh...

    --
    Roses are red
    Violets are blue
    In Soviet Russia
    Poems write you!
    1. Re:Wine is not an Emulator. by Anonymous Coward · · Score: 5, Funny

      Mod parent up Informative. Mod this post Funny.

  2. Native ports now! by PCM2 · · Score: 5, Funny

    Oh my god, how many times do we have to say it? People, running Windows software under WINE is not a solution. I say all Slashdotters should boycott these software vendors until we get a serious commitment from them to do true, native Linux ports of their products.

    And for that matter, why aren't their open source alternatives to this software already? The open source community won't stay competitive by resting on its laurels.

    --
    Breakfast served all day!
    1. Re:Native ports now! by freshman_a · · Score: 5, Funny



      Yes, I demand that there be open source native Linux ports of all Windows viruses!

      </sarcasm>

  3. Combatibility! Yes! by physicsphairy · · Score: 5, Funny
    The last barrier between widows and linux is slowly but surely being eroded by the WINE engineers.

    Brilliant work guys!

  4. Damn worm writers... by Anonymous Coward · · Score: 5, Funny

    Programmers these days, don't they even CARE about cross-platform compatability!?

  5. That's awhole lot of differences by Dark+Coder · · Score: 5, Interesting

    True AV and AT (anti-trojan) SW engineers uses VMWARE for their studies and dissemination of malacious flotsam of codes floating around the internet.

    But the article is "A Good Thing" because it shows EITHER that Wine isn't 100% Microcrap or is more robust against viruses.

    Take your pick.

  6. about time. I almost forgot what a virus was by locutus2k · · Score: 5, Funny

    Its nice to see someone finally exploited this long missing aspect of linux. What better way to make a windozer user feel more at home than with their old virus friends.

    Nice article, and congrats matt on your first article.

    -Craig

  7. Done it. It works. Kinda. by Frater+219 · · Score: 5, Interesting
    This past December, one of the engineers at my workplace gave a presentation on WINE. Since I'm the security guy, somone asked me if Windows viruses ran under WINE. So I tried three: Lovgate, a Mydoom variant, and a Netsky variant.

    Lovgate simply exited without doing anything. Mydoom actually crashed WINE into its debugger. The Netsky variant, as the article describes (SomeFool is Netsky) actually ran. Moreover, it did a passel of DNS queries and actually tried to send e-mail (which was rejected). So, if that e-mail had been accepted, Netsky would have been able to propagate under WINE. As in the article, Ctrl-C proved necessary and effective.

    To make a long story short, yes, some Windows viruses do run under WINE. Of course, you have to tell WINE to run them -- not exactly the social engineering that viruses are intended to do. However, as WINE gets more popular and reliable, I would expect that this will be more of a problem for people who choose to (e.g.) run Outlook in WINE.

    (For what it's worth, WINE isn't the only way to run Windows viruses and worms on your non-Windows system. I've had to explain to users that yes, their VMware or Virtual PC system is quite capable of getting wormed, and that yes, they did need to do their Windows Update on that "virtual" Windows system, too.)

  8. Re:Obligatory by greechneb · · Score: 5, Funny

    Don't give them any ideas. Next thing you know we'll see Norton antivirus:Auto 2005 - guaranteed to keep your system virus free AND improve your gas mileage!

  9. What about spyware? by RikRat · · Score: 5, Funny

    I run Windows spyware under Wine. I also emulate IE6 so I can use CoolWebSearch and other cool searchbars! I have this cute Bonzi Buddy and a system tray icon which tells me the weather!

  10. Re:Obligatory by lukewarmfusion · · Score: 5, Funny

    Along with my 3-month oil changes, six month tire rotations, and annual checkup, I need to buy a new LiveUpdate license so my car won't crash?

    To be fair, if I spent that much on a Lexus I should expect to see pictures of Anna Kournikova.

  11. Re:Yes, but by einhverfr · · Score: 5, Funny

    That's GNU/MyDoom

    Or maybe MyGNUUM?

    What is MyGNUUM? MyGNUUM is a port of the popular Windows mass-mailer "MyDoom." It is licensed under the GNU GPL, which some have criticized as a "viral" license.

    --

    LedgerSMB: Open source Accounting/ERP
  12. Wine devs test for this by bluGill · · Score: 5, Interesting

    At the last WineConf (almost exactly one year ago) some of the Wine developers were testing the hot mail virus of the day to make sure it ran. That was the one that activated as a DDoS on www.sco.com. It ran, and after putting making www.sco.com resolve to 127.0.0.1 in /etc/hosts it attempted to take down the local machine.

    We also found the back door, and came close to getting arbitrary programs to run from it, but supper came before we got that part working. We think it would have worked if a free meal hadn't gotten in the way.

    So now you know. If a windows virus doesn't run under wine you can thank CodeWeavers for buying everyone a meal before we got it implimented.

  13. Re:Obligatory by 3TimeLoser · · Score: 5, Funny

    For that amount of money, I'd expect to see her in the passenger seat.

    Although, I'm sure my wife would not agree.

  14. Re:Obligatory by Illserve · · Score: 5, Funny

    I'm willing to bet that upon looking back, this statement is going to be much less funny in 10 years.