On CBS MoneyWatch: 6 things NOT to do on Twitter, Facebook
BNET Business Network:
BNET
TechRepublic
ZDNet

November 15th, 2007

Rogue anti-malware lures squirming though Skype

Posted by Ryan Naraine @ 9:44 am

Categories: Blogroll, Botnets, Browsers, Data theft, Exploit code, Firefox, Hackers, Metasploit, Microsoft, Mozilla, Patch Watch, Pen testing, Responsible disclosure, Rootkits, Spam and Phishing, Spyware and Adware, Symantec, Uncategorized, Viruses and Worms, Vulnerability research, Zero-day attacks

Tags: Skype Technologies S.A., Microsoft Windows, Spyware, Adware & Malware, Cyberthreats, Rootkits, Security, Viruses And Worms, Operating Systems, Software, Ryan Naraine

Malicious hackers are using Skype to try to trick Windows users into buying a rogue anti-malware application.

The lures arrive via Skype’s instant messaging feature with a warning that malware has been detected on the machine and urging users to run a “repair utility.” It provides a link to AlertMonitor.org, a domain registered to a Russian address.

Rogue anti-malware lures squirming though Skype

At AlertMonitor.org, the site runs a script that visually pretends to run a scan of the computer and, after a few seconds, displays a “Harmful and malicious software detected” warning.

Rogue anti-malware lures squirming though Skype

If a user is tricked into clicking anywhere on the warning, the site redirects to a different domain (scanandrepair.net) hawking a rogue anti-virus/anti-spyware application. It even pops up a page with a $19.95 receipt for what is described as a “Windows software patch.” (Click image for larger version).

Rogue anti-malware lures squirming though Skype

Rogue security applications use false positives as traps to get users to purchase and install software that turn out to be actual malware. In most cases, the rogue app will download additional Trojans, rootkits and keyloggers to steal sensitive information from the machine. Here’s a list of known rogue security programs.

A surefire sign that this is a malicious attack on Skype: It’s trying to get me to apply a Windows patch on my Macbook.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 5 Talkback(s)
Somebody please make it stop!
Noooooooooooooooooooooooo.............. (Read the rest)
Posted by: D. T. Schmitz Posted on: 11/15/07 You are currently: a Guest | | Terms of Use
This has been around a while...  PhatOne | 11/15/07
By Mac zealot definitions, this isn't malware  NonZealot | 11/15/07
I love this part:  Confused by religion | 11/15/07
RE: Rogue anti-malware lures squirming though Skype  clead | 11/15/07
Somebody please make it stop!  D. T. Schmitz | 11/15/07

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

  • Thought-provoking progressive ideas on diverse topics that intersect with technology, business, and life, and matter to the world at large. Visit SmartPlanet
  • More from IBM
  • Innovate your business' process model, play against the market, compete against others on our scoreboards and WIN! Try INNOV8 2.0: A BPM Simulator
  • Enabling Real-World Business Transformation through IBM Service Management Read the EMA Analyst Report
Click Here