Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security

December 2nd, 2010, 07:31 GMT · By

Twitter Trends Poisoned with Malicious Links

SHARE:

Adjust text size:


Malware pushers poison twitter trends with malicious links
Enlarge picture
Security researchers warn that malware distributors are aggressively pushing malicious links via Twitter Trends in a BHSEO-like campaign meant to infect users.

Just like Google Trends, which lists the hottest Google search topics and keywords, Twitter Trends provides a list of most discussed subjects on the microblogging platform at any given time.

In fact, Twitter trending topics are more visible than the Google's trends, because they are listed by default in the sidebar of every users’ timeline.

Clicking on any of them generates a real-time feed of tweets that contain the specific term, making it easier for people to follow public discussions on particular topics.

Cyber criminals commonly poison the results for the latest Google hot searches with malicious links, in what is known as black hat search engine optimization (BHSEO).

Some of them are now applying the same concept on Twitter. Denis Maslennikov, a security expert with antivirus vendor Kaspersky Lab, warns that there is currently an ongoing campaign using this technique.

Further investigation revealed several trending topics –‘Morgan Freeman’, ‘Advent Calendar’, ‘Pastor Maldonado’, ‘Toivonen’, ‘Grinch’ and ‘Hannukah’ – with various messages with the shortened URLs.

Various shortening services were used: tinyurl.com, urlcut.com, bit.ly, doiop.com, tiny.cc, alturl.com, shortlinks.co.uk, yep.it – all pointing to malicious websites,” the Kaspersky researcher warns.

The links take users through a series of redirects until they finally land on a page instructing them to download an ActiveX version of Flash Player in order to view the content.

The executable file served for download is not a Flash Player installer, but a trojan downloader detected by Kaspersky as Trojan-Dropper.Win32.Drooptroop.ipl.

Trojan downloaders/droppers serve as distribution platforms for other malware, so chances are that victims of this attack will end up with multiple infections on their computers.

Mr. Maslennikov points out that this Twitter Trends poisoning effort is quite aggressive, with almost 3,000 malicious links posted for every popular topic within a 40-minute window.

TELL US WHAT YOU THINK:

1,258 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Hundreds of Twitter Accounts Compromised by Spammers

Very Low Number of Malicious URLs Recorded on Twitter

Malware Distributors Spam Twitter Users on Recently Used Topics

The 'Wow' Spam Campaign Returns to Twitter

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM