ITPRO

Printed from www.itpro.co.uk

Register to receive our regular email newsletter at http://www.itpro.co.uk/reg/register.

The newsletter contains links to our latest IT news, product reviews, features and how-to guides, plus special offers and competitions.

Skip to navigation

    Waledac spammers fake ‘bomb blast’ news story

Malware authors use geolocation technology to make the attack more convincing and persuade users to click on malicious links.

By Asavin Wattanajantra, 17 Mar 2009 at 14:40

Security vendors have warned about a new social engineering attack that delivers fake news stories linking to malware.

The new attack tries to persuade users to watch a maliciously crafted fake Reuters video of a ‘bomb attack’ by downloading a version of Flash player, which is in reality malware.

The Waledac trojan had previously targeted users through Valentine’s spam in February.

However, this attack appears to be particularly clever, as the malicious websites have been engineered using geolocation technology to report the location of the incident to correspond with the user’s IP address.

“Don’t be fooled by the location. The site is running a couple of clever scripts," said Rik Ferguson of Trend Micro on the company’s security blog.

“One of them will detect the location of your IP address and vary the location of the disaster accordingly. The other will vary the name of the downloaded file (news.exe, save.exe, run.exe etc.)”

He said it was further evidence that botnet authors were actively filling the void left behind by the fall of the Storm botnet and the McColo server takedown.

Security vendors Sophos and Websense also reported the attacks.

Email to a friend

Print this page

< Previous   Security : News Next >

Be the first to comment on this article

You need to Login or Register to comment.

 Sponsored Links

advertisement
advertisement

    Register for IT PRO

You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.

Sponsored Links
Advertisement