Gaming mouse-maker Razer hit with infected firmware
IDG News Service - Gamers trying to update their mouse or keyboard drivers from accessory maker Razer USA's Web site recently may have gotten more than they bargained for.
That's because the company's computers appear to have been hacked, and its support site used to spread malicious Trojan horse programs, according to Rik Ferguson, a researcher with Trend Micro. After hearing comments from concerned customers, Trend researchers took a look at Razer's drivers. They downloaded 8 infected drivers, and immediately contacted Razer. "They immediately took the site offline," he said in an instant message interview.
Customers who downloaded this software would get the drivers they requested, but they also got an obscure Trojan program called WORM.ASPXOR.AB. "The malware had very low detection rates, with only 7 out of 41 vendors offering generic detection," Ferguson said.
To make matters worse, gamers often turn off their antivirus protection to speed up their gameplay, so some victims may have never had a chance of catching the Trojan.
Based on the complaints, Ferguson believes that the malicious Trojans were probably available on Razer's Web site for just a few days.
Company spokesman Heathcliff Hatcher couldn't say exactly what had happened to cause the infected downloads. But he said that his company was working with Trend Micro to investigate the issue. The company's main Web site was still active Monday afternoon, but its support site had been taken offline. Visitors were greeted with the message, "Woops. We had to bring down Razer Support for the time being for a quick fix."
Based in Carlsbad, California, Razer makes cool-looking accessories such as mice and keyboards designed to give customers and edge when they play PC games.
The company is just the latest in a growing list of hardware makers who have been duped into infecting their own customers. Three years ago, Apple shipped a small number of video iPods infected with a virus. Apple blamed the issue on an infected Windows machine, used to test the devices before they were shipped. Hard drive maker Seagate and computer retailer Best Buy have also shipped infected products in the past few years.
Ferguson couldn't say whether Razer's Web site had been hacked or if the security breach had occurred on other company systems. "It's impossible to know," he said.
Razer customers who think they may have been infected can try Trend'sfree House Call service to see if they've been hit.


- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Mobile Middleware Strategies
- Learn why a mobile development platform is critical to be able to support today's complex enterprise mobility strategies. Learn what to look for...
- The Evolution of Enterprise Mobile App Development
- Driven by explosive growth in smartphone and tablet sales, enterprise mobility has become an essential part of business. Organizations across industries are developing...
- Native & HTML5 Mobile Apps: Not an either or, but a where and when
- Learn how developers are using HTML5 and native development methods to build mobile apps. Get practical insights on how these tools are being...
- Enabling Remote Employees with High Quality Video
- In this paper, we analyze the delivery of live and on-demand mobile video content. It focuses on specific ways in which organizations can...
- What to Look For in Solutions For Mobile Device Management
- Managing an increasingly mobile workforce has become one of the most challenging - and important - responsibilities for IT departments. This paper examines... All Mobile and Wireless White Papers
- The Office of Tomorrow with BlackBerry
- Curious about the office of the future and how to prepare with BlackBerry solutions? This session discusses the office needs of tomorrow and...
- The Changing Role of Tablets in the Enterprise
- Do you understand all the capabilities and potential of the BlackBerry PlayBook tablet? BlackBerry® PlayBook™ tablet can help enterprises do business differently.
This webcast... - Security Certifications 101 - BlackBerry and all those acronyms what do they mean and why they matter?
- FIPS, Common Criteria, CAPS, AISEP, NFC, NIST, Fraunhofer SIT, CESG, DSD - these are just some of the government and industry certifications which...
- PlayBook Video about two Grade 6 classrooms that are using PlayBook tablets
- RIM recently worked with Park Manor Public School in Elmira, ON to integrate BlackBerry PlayBook tablets in two Grade 6 classrooms. The project...
- McCain Canada deployed BlackBerry PlayBook tablets with a custom application to their salesforce
- McCain Foods Limited (McCain) has deployed BlackBerry® PlayBook™ tablets in order to enhance mobility within their sales force- along with a customized application... All Mobile and Wireless Webcasts
Prepaid service has started to transform from a source of cheap, bottom-of-the-barrel phones into a viable outlet for compelling smartphones. Read more...