Energizer Removes Infected Battery Monitoring Software

The company says that it is working with U.S.-CERT to determine how the software on its servers became infected.

Energizer Holdings, Inc. on Friday said that it had been notified by the U.S.-CERT Coordination Center that Windows software it had been offering for download contained a vulnerability.

The company said that the software, designed to complement its DUO USB battery charger by allowing users to view battery power levels on a connected computer, has been removed from Energizer's Web site and that the company has discontinued the sale of the charger.


More Hardware Insights

White Papers

More >>

Reports

More >>

Webcasts

More >>

Unlike past incidents in which malware has been distributed with a consumer product, like the infected digital picture frames sold by Best Buy in early 2008, the Energizer DUO USB battery charger does not ship with infected software.

Instead, the product's manual directs users to download the malware from Energizer's Web site.

"Energizer is currently working with both CERT and U.S. government officials to understand how the code was inserted in the software," the company said in a statement.

Energizer is advising its Windows-using customers to uninstall the software, which may require the manual removal of a file, Arucer.dll, which resides in the Window system32 directory.

The company also offers an version of this software that's compatible with Apple's Mac OS X. That version, however, does not contain any known vulnerability.

According to a U.S.-CERT advisory published on Friday, "Arucer.dll is a backdoor that allows unauthorized remote system access via accepting connections on 7777/tcp. Its capabilities include the ability to list directories, send and receive files, and execute programs."

Symantec security researcher Liam O Murchu on Friday published a technical analysis of what Symantec is calling Trojan.Arugizer.

He notes that the name "Liu hong" was found in the code and speculates that this could be the name of the Trojan's creator.

He also says that the Trojan will operate with or without the DUO USB charger plugged in.

Join us for a virtual event on strengthening IT security's weakest link: the end user. It happens Wednesday, March 24. Find out more and register.

Related Reading




Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

InformationWeek encourages readers to engage in spirited, healthy debate, including taking us to task. However, InformationWeek moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. InformationWeek further reserves the right to disable the profile of any commenter participating in said activities.

Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.
T-Shirt Giveaway T-Shirt Giveaway: Each week we're selecting one great comment from our readers. The author of the comment will receive an InformaitonWeek Community t-shirt. So get posting!
Subscribe to RSS

Resource Links