<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; banner ads</title>
	<atom:link href="http://www.darknet.org.uk/tag/banner-ads/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Thousands Hooked by Malware from Big Sites</title>
		<link>http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/</link>
		<comments>http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/#comments</comments>
		<pubDate>Wed, 07 Nov 2007 06:54:36 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[banner ads]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[viral]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[viruses]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/</guid>
		<description><![CDATA[If I recall this is not the first time this has happened, delivering viral payloads via banner ads and flaws in scripting. It seems that malware peddlers are getting more aggressive though, it obviously shows there is actual monetary value in infecting people and stealing their data. A subtle form of social engineering too, by [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>If I recall this is not the first time this has happened, delivering viral payloads via banner ads and flaws in scripting.</p>
<p>It seems that malware peddlers are getting more aggressive though, it obviously shows there is actual monetary value in infecting people and stealing their data.</p>
<p>A subtle form of social engineering too, by leveraging on the trust a user gives to a big name site, they also pass that trust on to the banner ads displayed on that site.</p>
<blockquote><p>Thousands of PC users have been duped into surrendering sensitive information and installing malicious software after falling victim to a complex scam that continues to plague well-known websites, a researcher warns.</p>
<p>The scam is the latest to piggyback on banner ads that are fed to high-traffic destinations. Malicious code hardwired into the ads prompts a pop-up that warns of a bogus security threat on the visitor&#8217;s machine. It offers to fix the problem in exchange for a fee and for credit card information. The ad then attempts to install a back door on the victim&#8217;s machine.</p></blockquote>
<p>There are thousands of sites with these malware infested banner ads running, so be careful. It seem you&#8217;re no longer safe even if you stay away from the seedier parts of the web.</p>
<p>I&#8217;d guess though the vast majority of readers here wouldn&#8217;t be stupid enough to download a prompted &#8216;security&#8217; fix which randomly appeared.</p>
<blockquote><p>Jackson estimates the rogue ads have appeared on anywhere from &#8220;several hundred to 1,000&#8243; sites, which tend to be related to television and entertainment. Based on unique signatures of the javascript used in the attack, which researchers have seen passing over the net, he estimates thousands of people have fallen for the ruse.</p>
<p>Jackson has managed to shut down at least two servers serving the bad ads, but warns at least two more are still operational. He declined to identify the servers or the websites by name.</p></blockquote>
<p>I hope they manage to shut down the rest and save all the witless morons surfing the web from more infestations and information leakage.</p>
<p></p>
<p>Source: <a href="http://www.channelregister.co.uk/2007/11/07/rogue_antispyware_ads/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Thousands+Hooked+by+Malware+from+Big+Sites+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D734+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/&amp;t=Thousands+Hooked+by+Malware+from+Big+Sites" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/&amp;title=Thousands+Hooked+by+Malware+from+Big+Sites" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/&amp;title=Thousands+Hooked+by+Malware+from+Big+Sites" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/&amp;title=Thousands+Hooked+by+Malware+from+Big+Sites" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/&amp;title=Thousands+Hooked+by+Malware+from+Big+Sites" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F11%2Fthousands-hooked-by-malware-from-big-sites%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/11/thousands-hooked-by-malware-from-big-sites/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
	</channel>
</rss>

