iEntry 10th Anniversary RSS Newsletter Advertising
Visit Twellow.com
Text: Decrease Font Size Increase Font Size | Print Print Article | Share: Delicious Digg StumbleUpon Post to Twitter Post to Facebook
1 commentFriday, December 28, 2007

Bhutto Assassination Draws Malware Scammers

Beware of video links on the Blogger service
Blogger links that purport to lead to video of Benazir Bhutto's last moments alive go to a fake video codec and an all too familiar exploit.

Criminals have long embraced current events as fodder for their schemes. Benazir Bhutto's assassination in Pakistan grabbed worldwide attention (Resource Shelf has several useful links), and of course that of malware creators.

Security vendor McAfee has spotted several sites on Google's Blogger service hosting new social engineering attempts related to this. The scams purport to link to a video of the Bhutto assassination.

If someone clicks one of these links, the browser displays a message saying a new Video ActiveX Object needs to be downloaded to play the video. This codec is a fake, one that has been seen plenty of times previously.

"These webpages contain obfuscated variants of the MS06-014 exploit which is perhaps one of the most popular of all the exploits we see on a daily basis," researcher Rahul Mohandas said in an Avert Labs blog post.

That exploit affected Microsoft Data Access Components, and received a patch in April 2006. However, scammers continue to hope to find unpatched systems that will allow their exploit to work, and download more malware to the PC.

Publish A Comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
2 + 11 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.
SEARCH
Popular WPN Business Resources












Subscribe to WebProNews


Send me relevant info