Security experts warning to Netizens that online scammers may seek to exploit the death of Al-Qaida leader Osama Bin Laden to spread malware has come true. According to security firm Websense, the web site of Sohaib Athar (@ ReallyVirtual), the man who unknowingly gave live ring-side view of the Osama Bin Laden's death on microblogging site Twitter, has been hacked.
Websense has discovered that the website belonging to Athar has been compromised by hackers and leads to the Blackhole exploit kit. This means Web surfers who visited Athar's blog early on Monday may have malware silently installed on their computers.
According to Websense, "Anyone going to this page would also load content from the malicious URL.... and the Blackhole Exploit Kit would then try to use several exploits to automatically install malware on the PC".
The malware that the drive-by-download attemps to install is a fake system tool named 'Windows Recovery' that claims to have found problems on the victim's computer. To convince the user that something really is wrong with the system, the malware hides all files and folders in the hard drives and on the desktop says Websense in its blogpost.
Not surprisingly, scammers offer the user a quick solution to this problems with a purchase of the premium version of 'WindowRecovery'.
Websense has discovered that the website belonging to Athar has been compromised by hackers and leads to the Blackhole exploit kit. This means Web surfers who visited Athar's blog early on Monday may have malware silently installed on their computers.
According to Websense, "Anyone going to this page would also load content from the malicious URL.... and the Blackhole Exploit Kit would then try to use several exploits to automatically install malware on the PC".
The malware that the drive-by-download attemps to install is a fake system tool named 'Windows Recovery' that claims to have found problems on the victim's computer. To convince the user that something really is wrong with the system, the malware hides all files and folders in the hard drives and on the desktop says Websense in its blogpost.
Not surprisingly, scammers offer the user a quick solution to this problems with a purchase of the premium version of 'WindowRecovery'.