Thursday, October 18, 2007

Fake Microsoft Anti-Spyware Site

This is pretty insidious but not ingenious. It's been done before. An anti-spyware center masquerading as a Microsoft site.

This is sort of a new twist on the old social engineering tactic of e-mailing patches laden with malware to unsuspecting people. The sender was always a spoofed Microsoft e-mail address.

Details of the exploit, with a video demonstration, are on McAfee's Avert Labs blog:


Post a Comment

Links to this post:

Create a Link

<< Home