The malicious elements are served via a compromised ad network

Jun 19, 2012 13:28 GMT  ·  By

Security experts from Perimeter E-Security have discovered that the Major League Baseball (mlb.com) site has been distributing fake antivirus malware via a compromised ad network.

When users visit the site they are met by a pop-up window that warns of potential threats.

Internauts who make the mistake of clicking on the Clean computer button are served a “setup.exe” file that contains the actual fake AV.

The malware itself is not uncommon. It presents the victim with a list of allegedly infected files that threaten the computer. In order to remove the infection, a “full version” must be purchased for the price of $99 (78 EUR).

Users are advised to be cautious when visiting the website.

Currently, only 10 antivirus products identify the setup.exe file as being malicious. However, in these situations, as long as users don’t click on anything when presented with the initial “infection report” they should be safe.