Monday, July 9, 2007

Malware spawned through hundreds of AOL sites, others

See this screenshot of a web page? You wouldn't want to click on �Continue�, because you�ll get the opportunity to install a nasty piece of spyware, the zlob fake codec.

Fakezlob1238888

Unfortunately, this codec is being hosted on over 450 free AOL accounts. But it�s not just AOL � as you can see from this list of infection sites, there�s quite a few others in there as well.

These sites are designed to work off of typos. You input a typo, and the search link shows up.

For example, typing in cadicallic� on Live brings up the following results:

Searchresults12399999

Alex Eckelberry
(Credit to security research Brian Porter)

No comments:

Post a Comment