R E L A T E D   C O N T E N T
ADVERTISEMENT

Malware writers exploit Bhutto killing

Hackers use assassination to push Trojans

Shaun Nichols in California, vnunet.com 03 Jan 2008
ADVERTISEMENT

The assassination of former Pakistan prime minister Benazir Bhutto has become the latest hook to lure users to malicious websites.

Researchers at security firm McAfee said that attackers were embedding blog pages with URLs for malicious sites that claim to offer a video of the killing.

Users who attempt to view the video are prompted to download what the site claims is a codec file needed to 'translate' the video.

The 'codec' is actually a Trojan program that installs malware on the user's system.

Other sites then attempt to exploit a previously patched flaw in Internet Explorer to install the malware.

The use of major news events as a means of spreading malware is not uncommon. The infamous Storm worm surfaced early last year as an attachment to fake emails about flooding in Europe.

Criminals also used the Virginia Tech shootings, the London terror bombing, and Hurricane Katrina to bring in victims online.

The use of fake codecs is also a common tactic for spreading malware. Attackers will often use the promise of pornographic videos to lure users into downloading and installing Trojans.

The recent MacOS X Trojan was one such example of such an attack, using the fake video files to deliver a DNS changer.

See also:

Predictions for 2008Mobile malware, botnets, phishing and ID theft  24 Dec 2007
Malware redirects host file  19 Dec 2007
2007 Review of the YearTop 10 malware list for 2007  24 Dec 2007
Finjan reports new wave of malicious activity  17 Dec 2007
Trojan horseComet Cursor tops Webroot threat list  14 Nov 2007
Trojan horseMalware authors tweaking payload, say researchers  08 Nov 2007

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C# Web Developer, Finance, London Financial Services Required: C#, ASP.NET, AJAX Fantastic opportunity not to be missed!! This is a great opportunity to work on a unique objectives that no other company is doing working ... more >
| JAM Recruitment
Senior Hardware Engineer Scotland/Edinburgh Communication Systems Permanent Position 40-45K+Benefits A leading organisation involved with the design and development of data acquisition systems and synthesis boards for a range of radar, signal intelligence and software radio ... more >
| JAM Recruitment
FPGA Engineer Defence/Safety Critical Buckinghamshire Permanent Position 45K+Benefits A leading UK defence organisation requires an experienced digital design engineer to strengthen its existing development team due to a number of long-term projects that have recently ... more >
| JAM Recruitment
DSP Engineer 3 Months Contract Hertfordshire £Excellent Rates£ This position requires you to have experience of measurement algorithms development for the generation and analysis of digital wireless communication standards including GSM, EDGE, UMTS, WLAN and ... more >
More job opportunities