LiveJournal Advert Installs Malware

Use Netsparker


Seems like someone sneaked past the LiverJournal advertisers policy by only trying to infect Australian and European users.

A certain advertiser (kpremium.com) – being sneaky and underhanded. It’s not LJ’s fault, LJ already disabled the advert from rotation.

The ad itself is for a program that lets you download stuff – you know the sort of thing. The ad is a Flash ad, and masquerades as a banner ad.

Thing is, the Flash ad contains code to open a popup that leads to a very different destination – it’s what I assume is an affiliate link that attempts to download and install ErrorSafe on your computer.

Source: no_lj_ads

LJ have said they are looking into it.

It looks like one of our advertisers possibly managed to sneak past our ad guidelines. The kpremium ad is designed and targeted for people in Western Europe and Australia, and we’ve received reports from people in those regions, indicating that it’s doing obnoxious things with the browsers — shrinking the window and generating popups. (Many people mentioned “ErrorSafe” in

Source: lj_ads

Sneaky eh, all the more reason to use Firefox, Adblock Plus and NoScript!

Also keep your anti-virus software up to date just in case.

Posted in: Malware, Web Hacking

, , ,


Latest Posts:


HTTP Security Considerations - An Introduction To HTTP Basics HTTP Security Considerations – An Introduction To HTTP Basics
HTTP is ubiquitous now with pretty much everything being powered by an API, a web application or some kind of cloud-based HTTP driven infrastructure. With that HTTP Security becomes paramount and to secure HTTP you have to understand it.
Cangibrina - Admin Dashboard Finder Tool Cangibrina – Admin Dashboard Finder Tool
Cangibrina is a Python-based multi platform admin dashboard finder tool which aims to obtain the location of website dashboards by using brute-force, wordlists etc.
Enumall - Subdomain Discovery Using Recon-ng & AltDNS Enumall – Subdomain Discovery Using Recon-ng & AltDNS
Enumall is a Python-based tool that helps you do subdomain discovery using only one command by combining the abilities of Recon-ng and AltDNS.
RidRelay - SMB Relay Attack For Username Enumeration RidRelay – SMB Relay Attack For Username Enumeration
RidRelay is a Python-based tool to enumerate usernames on a domain where you have no credentials by using a SMB Relay Attack with low privileges.
NetBScanner - NetBIOS Network Scanner NetBScanner – NetBIOS Network Scanner
NetBScanner is a NetBIOS network scanner tool that scans all computers in the IP addresses range you choose, using the NetBIOS protocol.
Metta - Information Security Adversarial Simulation Tool Metta – Information Security Adversarial Simulation Tool
Metta is an information security preparedness tool in Python to help with adversarial simulation and assess security defense preparation and alerts.


Comments are closed.