Trojan malware masquerading as Harry Potter movie downloads
Friday, July 17, 2009
Cybercriminals seeking to exploit the popularity of the Harry Potter film franchise have been spreading Trojan malware-infected links to phony movie downloads on social networking sites and in blogs filled with search terms to get them ranked higher in search engines.
The blogs and links on social networks attempt to lure unsuspecting Potter fans with come-ons like, "Watch 'Harry Potter and the Half-Blood Prince' movie 2009 online for free," according to PC Tools, in a post to its ThreatFire blog.
When a user clicks on the link to see the movie, they are told to download a movie file "streamviewer," which is actually a Trojan downloader that installs a variety of malware on the user's PC, including the koobface worm, adware, scareware, spam bots and spyware.
PC Tools said it has been tracking the IP address where the files originate and reports that the cybercriminals have been pushing blackhat SEO tactics to exploit hype over upcoming movie releases.
"This is headline malware," said PC Tools' Mike Greene, according to the NYtimes.com Bits blog. "When Michael Jackson passed away we saw a surge around that. Whenever you see a headline, you can be pretty confident you will find some hot malware."

Related News:
Network security update not responsible for crashes - 2.24.2010 Reports of the so-called "blue screen of death" following the installation of the latest Microsoft security update are the result of malware, not a defect in the update.
Botnets and Chuck Norris take aim at network security - 2.22.2010 Last week, word spread of the Kneber botnet compromising more than 2,000 computers worldwide. With the start of a new week comes more malware attacks plaguing the web community. The so-called "Chuck Norris" botnet is attacking routers and DSL modems by guessing commonly used passwords.
Web security company warns of scareware's risk - 2.19.2010 The rise in scareware attacks and cyber criminal behavior in general forced DynaSis, an IT services company, to issue a warning to its users about the threat of fake anti-virus software infecting their computers on Friday.
Age-old trick with brand-new target - 1.18.2010 Cyber criminals have turned to a scam from the early days of the internet to target the growing smartphone market: Trojan phone dialers.
Report: 'At least 34' firms attacked at the same time as Google - 1.15.2010 The Washington Post asserts that many U.S. companies were targeted in the same network security and email breach that affected Google and provoked the company's highly publicized spat with the Chinese government.
|