14 May 2002
Thousands of unsuspecting visitors to a popular family website have been tricked into downloading malware.
Visitors to Flowgo who clicked on a pop-up ad running on its humour site were automatically directed to a booby-trapped site called KoolKatalog.
Further reading
Once at KoolKatalog they were invited to input their email address into a digital slot machine, solve a puzzle and win a prize.
According to virus experts, code in the pages at KoolKatalog exploited a known flaw in an old version of the Java engine of Microsoft's Internet Explorer browser to covertly download files onto visitors' computers.
McAfee researchers have not yet completely worked out what the files do. Some files attach themselves to victims' browsers and covertly monitor the sites they visit while others enable the program's authors to secretly send updates or other files to the infected computer.
An install program switches off the firewall and grabs more files from one of two IntelliTech Web servers, online1net.com and wwws1.com.
Flowgo's owner, eUniverse, said IntelliTech's automatic redirects violated its ad policy, and pulled the pop-ups as soon as it learned what was happening.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Systems Analysis Project Lead - UML, Agile, Waterfall...
IT Business Analyst - ISEB, PRINCE2 - Southampton, Hampshire...
Predictive Modelling analytics - (SAS) - South-East...
iOs Developer - JEE, cocoa, Objective-C - Midlands (potential...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?