Malicious cards, Brittany Murphy poisoned search hit web

Share this article:

Security researchers on Monday began warning internet users of a pair of unrelated threats whose goal is to install malware on victims' machines.

Prashant Kumar, a virus analyst at Sophos, said in a blog post that a new wave of spam purport to be Christmas-related electronic greeting cards sent from Hallmark. However, clicking on the link included in the message installs a trojan known as VBlnject.

More e-card scams are expected during the holiday season, experts said.

Meanwhile, the untimely death of actress Brittany Murphy has, as expected, given rise to a number of poisoned search attacks, said Dave Marcus, a researcher and communications manager at McAfee Avert Labs, in a blog post.

Through a technique known as blackhat search engine optimization (SEO), searches for phrases such as "Brittany Murphy dies" or "Brittany Murphy 8 mile" have resulted in a number of questionable results trying to lure users to websites pushing rogue anti-virus programs or other malware. The ploy is a common one for attackers hoping to cash in on a curious public seeking news on a major media story.

"This has been a well established trend throughout 2009," Marcus said. "It is a sad reflection that malware authors and scammers will use these events as lures to distribute their warez and site links."

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

TOP COMMENTS

More in News

ISSA tackles workforce gap with career lifecycle program

ISSA tackles workforce gap with career lifecycle program ...

On Thursday, the group launched its Cybersecurity Career Lifecycle (CSCL) program.

Amplification DDoS attacks most popular, according to Symantec

Amplification DDoS attacks most popular, according to Symantec

The company noted in a whitepaper released on Tuesday that Domain Name Server amplification attacks have increased 183 percent between January and August.

Court shutters NY co. selling security software with "no value"

A federal court shut down Pairsys at the request of the Federal Trade Commission.