Paris Hilton and Britney Spears Hooks in Spam BotnetBest Security Tips offers daily news, information, advices and tips about spyware, adware, viruses, trojans, web vulnerabilities, hackers, other threats    | Register now | Login
   
TIPS NEWS TOOLS DOWNLOADS MALWARE FORUM BOOKS FREE MAGAZINES FREE WEBCASTS & VIDEOS
GFI LANguard - New Version 9 Out Now - Dld 30-day trial!   $100 Free Sweep   Bookmark and Share 
Best Tips
Security Scanner
Security Categories
Advertise With Us!
Latest Viruses / Threats
2009/12/24 0:00:00
2009/7/3 22:52:05
2009/7/3 22:52:05
2009/7/3 21:32:02
2009/7/3 17:46:40
Our Partners
Downloads
Security Incidents : Paris Hilton and Britney Spears Hooks in Spam Botnet
Posted by Max on 2008/2/8 13:23:44 (1189 reads)
Security Incidents

A new spam botnet troubles users, especially those looking to see more of the “spicy” material overrated names like Britney Spears and Paris Hilton could deliver. The botnet uses emails embedded with bogus Britney Spears and Paris Hilton Google search links leading users to malware hosted by the infamous Russian Business Network (RBN).

According to the popular security provider BitDefender the e-mails do not embed a typical URL link as they should, but apparently use Google search result links such as 'www. google .com/pagead/iclk?...' so that they dodge url-based spam filters.

What the new spam botnet does is direct users to a site promising explicit videos of celebrities including ‘New naked Britney video’ and ‘Paris Hilton New Video Auditioning Topless’ (like there would be anything new to see there) which hosts malware.

If you did “manage’ to download and execute the malicious code, dubbed Trojan.Downloader.Exchange.A, the result will be more malware downloaded and executed.

As BitDefender’s Defence Center blog informs us, when users check the link, they will be showed a link to Google, however Google in turn redirects to the site specified as parameter in the URL.

The blog states that “Google uses these types of URL's to redirect users who click on advertisement served up by Google's AdSense program, however insufficient parameter validation means that malware authors can modify the URL and use it to redirect users to arbitrary sites.”

The same security company reveals that the malware host, RBN is known as a safe shelter for spammers and malware writers worldwide.

Known as celebrity spam due to its use of notorious names such as Britney Spears and Paris Hilton's (who can possibly guess why), this type of malware has been using this method to lure users into accessing malicious links with increasing success.




Other articles
2009/7/1 13:22:13 - Ultimate Firewall : Location Aware WLAN Firewall by Trapeze Networks
2009/6/28 16:04:09 - New Panda 2010 Ultra-Ligh Security Products
2009/6/24 17:08:30 - Red Condor's Spam Trip Wire Detects a New Computer Virus
2009/6/22 4:32:25 - Finjan's Research Unveils Botnet Trading Platform for Hacked PCs
2009/6/22 4:23:14 - Panda GateDefender Integra Delivers 'Plug and Protect' UTM Security Appliance
2009/6/16 15:42:26 - SanDisk Cruzer Enterprise Wins 2009 Product Innovation Award
2009/6/9 9:02:20 - Weekly $100 Sweepstake Launched By BestSecurityTips.com
2009/6/8 11:29:49 - Paretologic Released a New Free Online Malware Scan
2009/6/8 11:13:17 - New Release of Djigzo Open Source Email Encryption Gateway
2009/5/31 17:27:39 - New BitDefender Online Scanner Released

The comments are owned by the poster. We aren't responsible for their content.