• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   Bad Sites   »   Searches for “Super Bowl” News and Bill Cosby’s Supposed Death Lead to FAKEAV

Searches for “Super Bowl” News and Bill Cosby’s Supposed Death Lead to FAKEAV

  • Posted on:February 12, 2010 at 3:12 am
  • Posted in:Bad Sites, Malware
  • Author:
    Danielle Veluz (Technical Communications)
3

It is that time of the year once again for football enthusiasts and sports fanatics alike with the latest season of “Super Bowl.” The “Super Bowl” is one of the U.S. television broadcasting industry’s top-rating shows, drawing thousands of live viewers each game. This year, according to Nielsen, 106.5 million viewers reportedly watched the games, some 24 percent of whom, according to Mashable, watched online.

This is probably why cybercriminals take advantage of the show’s popularity, trying to lure unsuspecting fans via blackhat search engine optimization (SEO) techniques. This is, of course, no longer new, it has happened before but that did not stop cybercriminals from using the same tactics again to push a FAKEAV to online viewers.

Trend Micro threat analysts found that searching for “Super Bowl 44 airtime” in Google led to results that redirected users to malicious sites that claim to contain the information they are looking for.

Click for larger view Click for larger view
Click for larger view Click for larger view

Upon clicking the link, a prompt alerts users of supposed malware infections, an all-too-familiar tactic rogue antivirus peddlers use to sell their malicious wares.

Also, apart from exploiting an attention-grabbing sports event, cybercriminals have taken advantage of another actor’s supposed death—that of comedian, Bill Cosby—to propagate the exact same FAKEAV variant detected by Trend Micro as TROJ_FAKEAL.SMDP.

Click for larger view Click for larger view
Click for larger view Click for larger view

As in previously featured blackhat SEO attacks, users face the same risks yet again, including credit card theft:

  • FAKEAV Gets First Dibs in Profits from Apple iPad
  • Hackers Exploit Actor Johnny Depp’s Death Hoax
  • News on Brittany Murphy’s Death Lead to FAKEAV

Trend Micro™ Smart Protection Network™ protects product users from these threats by blocking user access to malicious sites and detecting and preventing the download of harmful binary files such as packupdate_build7_195.exe aka TROJ_FAKEAL.SMDP.

Non-Trend Micro product users, on the other hand, can also stay protected by using free tools such as Web Protection Add-On.

Learn how to protect Enterprises, Small Businesses, and Home Users from ransomware:
ENTERPRISE »
SMALL BUSINESS»
HOME»

Security Predictions for 2020

  • Cybersecurity in 2020 will be viewed through many lenses — from differing attacker motivations and cybercriminal arsenal to technological developments and global threat intelligence — only so defenders can keep up with the broad range of threats.
    Read our security predictions for 2020.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Recent Posts

  • Our New Blog
  • How Unsecure gRPC Implementations Can Compromise APIs, Applications
  • XCSSET Mac Malware: Infects Xcode Projects, Performs UXSS Attack on Safari, Other Browsers, Leverages Zero-day Exploits
  • August Patch Tuesday Fixes Critical IE, Important Windows Vulnerabilities Exploited in the Wild
  • Water Nue Phishing Campaign Targets C-Suite’s Office 365 Accounts

Popular Posts

Sorry. No data so far.

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.