Disguising Trojan horse malware as video codecs has became a favourite trick for hackers. The ruse allows malware authors to bait their enticement with the promise of free porno clips or the like.
Last week, the approach was used by a rogue affiliate to offer Google Pack. The site has since been pulled. Anti-spyware firm Sunbelt speculates that hackers might have attempted the trick because it's starting to pay better to push legitimate applications rather than malware.
document.write('\x3Cscript src="http://ad.uk.doubleclick.net/adj/reg.security.4159/enterprise;'+RegExCats+GetVCs()+'pid='+RegId+';'+RegKW+'maid='+maid+';test='+test+';pf='+RegPF+';dcove=d;sz=336x280;tile=3;ord=' + rand + '?" type="text/javascript">\x3C\/script>');http://ad.uk.doubleclick.net/click;...banner|111207_us_45nm|_register_itpro_336x280
Google Pack comes bundled with several useful applications - such as Firefox, Skype, Adobe Reader, and anti-malware tools - that make setting up a new PC a great deal easier. For some, however, such as Steve "chair crusher" Ballmer, Google Pack might be viewed as the worst sort of malware.
http://www.theregister.co.uk/2007/11/12/google_pack_fake_codec_ruse/
Last week, the approach was used by a rogue affiliate to offer Google Pack. The site has since been pulled. Anti-spyware firm Sunbelt speculates that hackers might have attempted the trick because it's starting to pay better to push legitimate applications rather than malware.
document.write('\x3Cscript src="http://ad.uk.doubleclick.net/adj/reg.security.4159/enterprise;'+RegExCats+GetVCs()+'pid='+RegId+';'+RegKW+'maid='+maid+';test='+test+';pf='+RegPF+';dcove=d;sz=336x280;tile=3;ord=' + rand + '?" type="text/javascript">\x3C\/script>');http://ad.uk.doubleclick.net/click;...banner|111207_us_45nm|_register_itpro_336x280
Google Pack comes bundled with several useful applications - such as Firefox, Skype, Adobe Reader, and anti-malware tools - that make setting up a new PC a great deal easier. For some, however, such as Steve "chair crusher" Ballmer, Google Pack might be viewed as the worst sort of malware.
http://www.theregister.co.uk/2007/11/12/google_pack_fake_codec_ruse/