Update: New MySpace Trojan discovered

Powered by SC Magazine
 

A MySpace profile coercing users to click on a link to a ‘top model website’ is actually a malicious Trojan, according to security vendor F-Secure.

Mikko Hyponnen, chief research officer at F-Secure posted the discovery earlier this week and identified the malware as the Zlob Trojan.

According to the F-Secure security labs blog, the malware overlays existing MySpace profiles with banner messages that entice users to click on a malicious link then downloads and silently installs spyware on infected computers.

In this case a fake link to a 'top model site' has been used: “Find best model sites here, this profile contains adult content…CLICK HERE,” the blog states.

According to John McDonald senior security response manager at Symantec the Zlob Trojan’s goal is to download and install bogus spyware applications.

“It will pop up bogus messages [like] 'your system has been infected'. Then ask you to download anti-spyware software.

“Once downloaded, another message appears saying the software did not clean your system and instead you need another one which you have to pay for,” said McDonald.

In January millions of MySpace users were infected by an Apple Quicktime exploit attempting to steal user log in details.


Update: New MySpace Trojan discovered
 
 
 
Top Stories
Photos: Global Switch opens Sydney East data centre
First stage opened, to some fanfare.
 
ATO releases long-awaited Bitcoin guidance
Everyday investors escape the tax man.
 
Why the Weather Bureau’s new supercomputer is a 'gamechanger'
IT transformation starts to reap results.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Which is the most prevalent cyber attack method your organisation faces?




   |   View results
Phishing and social engineering
  68%
 
Advanced persistent threats
  3%
 
Unpatched or unsupported software vulnerabilities
  12%
 
Denial of service attacks
  7%
 
Insider threats
  11%
TOTAL VOTES: 492

Vote