Share

Related Links

Related Stories

  • Breaking the Online Bank
    As technology and online behaviors change, so too do methods to compromise a person’s – or organization’s – most vital assets: their financial details. Ted Kritsonis examines how cyber thieves are adapting, and what the banks are doing to stop them
    Members' Content
  • Spamming the socially active - spam diversifies to Twitter, IM, SMS, etc
    Once poison found only in email accounts, spam is now polluting every form of electronic communication from IM to SMS and from blogs to tweets. But how well is it doing outside its natural domain? William Knight takes a look at non-email spam
  • New Trojan malware variants evade major anti-virus engines claims CommTouch
    Based on an analysis of two billion emails and internet transactions processed by its OEM anti-spam and anti-malware customers every day, CommTouch says that millions of email-borne malware such as Trojans and viruses bypassed several major anti-virus engines during the second quarter of 2009.
  • Former BT CTO warns of rising levels of spam
    No, you're not alone in seeing more than a few smutty and pharma-promoting spam messages in your mailbox this week. Peter Cochrane. BT's former chief technology officer and head of research is getting them too – and he's less than amused.
  • Lifting the Digital Fingerprints
    No matter what your business, it’s likely the audit man (or woman) will ring your door at least once. Ted Kritsonis gets advice on how to make this experience a bit more comfortable

Top 5 Stories

News

Jackson's death rocks net

30 June 2009

Never one to miss a trick, the blackhat community capitalised on the death of Michael Jackson over the weekend by seeding the web with spam and malware designed to steal email addresses and join the troubled star's fans to botnets.

Initially, attacks were limited to unsophisticated spams, which contained no web site links or scripted payloads, according to Sophos. Instead, the spammers simply offered secret information about the star's death to the recipient, and invited a response back. Sophos deduced that the scammer was simply hoping to harvest email addresses.

F-Secure saw malware that it detected as Trojan.Win32.Buzus.bjyo begin to spread on Sunday night. The malware, which was distributed through sites including photos-google.com, was delivered as a file called Michael-www.google.com.exe which, when executed, dropped IRC bots with back door functions.

Another scam involved a spam mail that invited recipients to donate to the fictitious 'Michael Jackson Organization', and promised to publish information about how much had been donated via a

group.

Still more spam suggested that Jackson was not dead at all, and included an image that was peppered with random multicoloured lines to defeat antispam scanners. Clicking on the image took Web surfers to a pharmaceutical sales site.

The volume of searches referring to the pop star's death on Friday was so great that Google's automated systems thought that its servers were under attack. "As a result, for about 25 minutes yesterday, when some people searched Google News they saw a 'We're sorry' page before finding the articles they were looking for," the company said on its blog.

This article is featured in:
Internet and Network Security • Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.