Recently, a report from Qihoo 360 security guard center said that the trojan virus recently spread through ARP spoofing on campus networks, small area networks, and other local networks has become increasingly active. The symptoms of ARP spoofing Trojans are as follows: when using a LAN, the system will suddenly fail, and the system will return to normal after a period of time. For example, the client status becomes red frequently, the user is disconnected frequently, the IE browser is prone to errors, and some common software is faulty.
What's terrible is that ARP spoofing Trojans only need to successfully infect a computer in the LAN, which may lead to the failure of the entire LAN to access the Internet, which may even lead to paralysis of the entire network. In addition to the intermittent interruption of Internet access for other users in the same LAN, this Trojan can also steal user accounts and passwords through various Trojans. Such as stealing QQ passwords, stealing various online game passwords and accounts for money transactions, and stealing online bank accounts for illegal transaction activities. This is a conventional Trojan Horse trick, it causes great inconvenience and economic losses to users.
As Trojans spread through ARP spoofing are tenacious, once a computer is not cleaned up, other computers in the network may be infected. This is also the main cause of endless and repeated attacks. In this case, you can only protect your computer. Experts suggest using the arpfirewall to defend against ARP attacks, so that the system is not affected by ARP spoofing and ARP attacks. Experts recommend that you pay attention to this type of attacks when detecting and killing viruses.
In addition, the report also showed that the OnLineGames Trojan Horse, which has recently ranked first among the largest companies, is declining. It is replaced by the advertisement Trojan Win32.Popwin, if you find that your machine has some website advertisements or processes modifying the registry, use the security software to immediately scan and kill your machine.
If you are concerned about the ARP Trojan, you can refer to the perfect solution to prevent ARP attacks under Fedora Core.