Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Recent Posts

  • Calendar

    May 2012
    S M T W T F S
    « Apr    
     12345
    6789101112
    13141516171819
    20212223242526
    2728293031  
  • About Us
    Malware Blog > Search for Twitter Worm News Snowballs to More Malware

    Days after the Twitter worm outbreak that affected “tens of thousands of users,” the attacks on the popular microblogging site are anything but slowing down. In fact, cyber criminals are taking advantage of the public’s interest and high media coverage of the incident to spread malicious links.

    Among the top ten search results in Google for “Twitter worm” and “Mikeyy,” the name of 17-year-old author of the said worm, is a link that connects the user to a malicious URL that download malware into his/her system.

    The link in the result connects to a URL detected as HTML_DLOADR.NIC. The said URL is inaccessible as of this writing, but analysis reveals that it loads a JavaScript which is detected as JS_DLOADR.NIB.

    JS_DLOADR.NIB connects the user to a URL which further redirects the user into sites that trigger the download of TROJ_DLOADR.NID and TROJ_DLOADR.NIA into the affected system.

    TROJ_DLOADR.NID downloads TROJ_FAKEAV.RAG and TROJ_AGENT.GDAG, meanwhile TROJ_DLOADR.NIA cannot not run properly due to an error in its code. Trend Micro engineers are still verifying if this Trojan has the capability to download other malware. All mentioned URLs and malicious files are blocked and detected respectively, through the Trend Micro Smart Protection Network.

    “Mikeyy,” the author of the Twitter worm recently accepted a job at a Web applications development firm. As relieving as this can be, a 17-year-old managing to land himself a job because of a deploying a worm isn’t exactly the best example to other young people like “Mikeyy” in terms of the consequences that entail doing such actions.

    Technical information provided by Trend Micro Antivirus Engineer Jasper Manuel.





    Share this article
    Get the latest on malware protection from TrendLabs
    Email this story to a friend   Technorati   NewsVine   MySpace   Google   Live   del.icio.us   StumbleUpon




    19 Responses to “Search for Twitter Worm News Snowballs to More Malware”

    Trackbacks

    1. UnderForge of Lack » Blog Archive » Twitter worm insist another malware thru google
    2. cybasurfa (cybasurfa)
    3. Search for Twitter Worm News Snowballs to More Malware | Malware … | Webmaster Tools
    4. Malware distributors take advantage of Twitter worm’s notoriety | Technolocus
    5. Malware distributors take advantage of Twitter worm’s notoriety | MobileJewels TechNews
    6. Malware distributors take advantage of Twitter worm’s notoriety | Techno Portal
    7. VirusReport (VirusReport)
    8. TrojanReport (TrojanReport)
    9. WormReport (WormReport)
    10. bbhebert (Brandi Hebert)
    11. tweetnut (Steve Mason)
    12. zenhung (虹)
    13. Malware distributors take advantage of Twitter worm’s notoriety | Unit1
    14. 32100 (321)
    15. njdoc (Mark )
    16. Twitter: Under attack | IT Security | TechRepublic.com
    17. dgeorghiou (Dean Georghiou)
    18. The Ashes » Blog Archive » Twitter: StalkDaily/Mikeyy worm
    19. Twitter: Under attack | tempebasah media


     

    © Copyright 2011 Trend Micro Inc. All rights reserved. Legal Notice