All the latest UK technology news, reviews and analysis

Cyber criminals use iCloud SEO poisoning to spread fake AV

by Phil Muncaster

21 Jun 2011

Be the first to comment

  • Tweet this

Security experts are warning Apple fans searching for more news about the firm's forthcoming iCloud service to beware of poisoned search results that could lead them to fake anti-virus web pages.

Trend Micro fraud analyst Paul Pajares said in a post on the Trend Labs Malware blog that his team had uncovered several attempts by cyber criminals to take advantage of the popularity of the search term.

Many of the malicious URLs returned when a web user types in ‘iCloud' are linked to a compromised news site, MyMobi, said Pajares. One specific instance linked to a phishing site designed specifically for the rogue anti-virus Windows Antispyware for 2012.

"These URLs are not accessible via the URL address bar; rather, they show up in Google searches. We can tell this because the URL needs to have been referred by Google for it to become accessible," he explained.

"From there, they redirect to a FAKEAV URL bearing a top-level domain (TLD) co.cc. The script for downloading the file is similar to the ones usually used in typical FAKEAV malware."

Pajares added that the Trend team has also seen several pages with file names containing "apple" and "icloud" in what look like compromised sites, indicating a "possible co-ordinated mass compromise leveraging these keywords".

Scareware or fake anti-virus remains a massive money-spinner for cyber criminals. Most recently several versions have even been spotted designed specifically to con Mac users.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

37%

0%

10%

53%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Technischer Consultant

Ihre Aufgaben Sie sind zuständig für die Beratung...

MS Visual Basic Programmierer

***MS Visual Basic Programmierer mit Oracle DB-Erfahrung...

IT Business Analyst

IT Business Analyst Location: London, but...

Senior Software Developer

Senior Software Developer Company overview...

To send to more than one email address, simply separate each address with a comma.