latest technology news , guides , latest mobiles , reviews
EARN $4000/WEEK ONLINE WITHOUT SELLING, ADVERTISING, REFERRING OR OWNING A WEBSITE !!
Powered by MaxBlogPress  

Shocking : hacked Antivirus website installs virus on Visitor’s computer

  • By: Kanak Bhandari
  • Date:February 9th, 2008
  • 25 Comments
    • Get Chitika Premium

    Was just going through the daily news scene when I just got stuck over the article published over pcworld. It seems the Web site for Indian antivirus vendor AvSoft Technologies has been hacked and is being used to install malicious software on visitors’ computers.

    computer virus from antivirus website

    Hacking technique used , is not new !!

    Seems like the technique or the way used to hack the site is not new. In the past also many websites have been hacked and used to install such kind of malicious codes. Here is what was done

    The attackers open an invisible iFrame Window within the victim’s browser, which redirects the client to another server. That server, in turn, launches attack code that attempts to install malicious software on the victim’s computer.

    The malicious software is a variant of the Virut virus family.

    Quoting more from the article :

    The iFrame pages are commonly used by Web developers to insert content into their Web pages, but because it is possible to create an invisible iFrame window, the technology is often misused by hackers as a way to silently redirect victims to malicious Web sites.

    AvSoft, based in New Delhi, sells an antivirus product called SmartCOP and has sold a second antivirus product called Smartdog. The company, which is not well-known in the U.S., also specializes in recovering data lost due to virus attacks. The company could not be reached for comment.

    That data recovery service could come in handy for some, as Virut is known as a “parasitic infector” virus that is extremely difficult to remove. It infects all of your programs on your local hard drives, and then it starts hitting your network drives as well the first time you run.

    Fortunately, the malware used to install Virut exploits only well-known bugs, meaning that users who are running antivirus software on fully patched systems will probably not be infected by the attack in its current state, security experts say.

    Nobody is aware how the virus got inside the website as of now. The news is really shocking and do ring a bell about the highly insecure online world.

    :twisted: Moreover, it also give me an evil idea of marketing a product to create buzz all over the web world. Imagine, apple’s website getting hacked and publicizing Nokia or Sony. Similar way Microsoft’s website gets an advertisement of Linux !!! :twisted: evil, isnt it ??… Well !! jokes apart, and I hope the webmasters find a solution to this frequent occurring problem and prevent such kind of incident in Future.

    Remember the news about 16 year old kid hacking $84 million porn filter in just 30 mins ??

    Share/Bookmark

    Liked the Post ?? Then why not Subscribe FREE, For latest Updates


    EARN $4000/WEEK ONLINE WITHOUT SELLING, ADVERTISING, REFERRING OR OWNING A WEBSITE !! CLICK HERE TO KNOW MORE !!

    Related Posts

    25 Comments (Leave Yours)

    Comment by Rakshit
    2008-02-10 21:29:51

    Ohh, I am hearing this first time. Strange, really….
    Nothing is secured and protected these days…
    :-(

     
    Comment by anon
    2008-02-10 23:06:21

    OMG !!! I wonder what preventive measure one can take !! Iframe are a part of web !!

     
    Comment by Kanak Bhandari
    2008-02-10 23:48:07

    @anon , only preventive measure is to keep your OS updated with latest updates and install a proper antivirus and a spyware. ;)

    Cheers !!!

     
    Comment by Kanak Bhandari
    2008-02-11 00:00:45

    @rakshit
    Yeah nothing is secure over web :( . Regular updates can only save us :D .

     
    Comment by Nirmal
    2008-02-11 15:33:20

    One simple answer, nothing is secure over the web- Hackers all around. :-)

     
    Comment by Kanak Bhandari
    2008-02-11 18:38:18

    agree 100%

     
    Comment by EarnBlogger
    2008-02-11 21:36:25

    Yes no system is 100% secure, because they were created by human brains! And hackers are human too. So I think that creation and destruction – both depends on human brains!

    Hey! I’m giving away 1000 entrecard credits. Collect yours!

     
    Comment by Kanak Bhandari
    2008-02-11 23:21:34

    @earnblogger ,
    yeah human brain is root for all evil , :D
    and will surely check out the credits :D

     
    Comment by Smackall
    2008-02-12 10:42:44

    Ah, they were so much, careless this time. Might be AV companies should first learn how to protect them before they do any good to others. :)

     
    Comment by Clement Nyirenda
    2008-02-12 19:05:22

    Eish!!!Very sad to learn that we are not safe in this ever exciting blogosphere.The danger is that the more exciting it becomes, the more the sites one opens and the greater the vulnerability.

     
    Comment by Kanak Bhandari
    2008-02-12 23:12:18

    @smackall ,
    ohh yeah !! so true..they should pose an example atleast.

    @clement ,
    Web is a vulnerable place. The only way to keep yourself protected is to be updated all the time :)

     
    Comment by Datadoc
    2008-02-17 20:49:14

    Use Firefox and NoScript add-on, it blocks iframes.

     
    Comment by Kanak Bhandari
    2008-02-19 18:38:49

    @datadoc,
    Great info there buddy !! but not every iframe will launch malacious code

     
    2008-02-22 13:10:16

    i find many targetting indian IT companies, their skills and talent and are trying to malign India’s image…probably this is also the handiwork of these kinda people…

     
    Comment by Smackall
    2008-02-22 15:30:41

    @techbliss

    Thats true Rajesh, many Indian sites were hacked recently. Few months ago when we were working for a mobile game project for a client, their website suddenly changed and got pron images and links to hell lot of 3x sites. We then stopped working for them suddenly as we have a policy for our company strictly not to work in any means for a 3x based project. Then when I tried to contact the client he said it was hacked and the server control was fully taken over by the hackers. And it took few weeks to bring it back. :) Just imagine…

     
    Comment by Smackall
    2008-02-22 15:34:40

    The fun in the incident was that they didn’t replace the pages but simply added images and links in right places where people give importance. Link logo, banner etc. Just imagine if someone hacks google and puts a x’y logo variant. Same thing happened. The hacker were not only talented but also had good creativity. :)

     
    Comment by Kanak Bhandari
    2008-02-22 18:33:43

    @rajesh,
    hackers are not country specific , but yeah they are company specific. Example defacing a highly popular new site like CNN.

    @smackall
    ohh that was really sad incident which happened for your client. Mostly all the hackers are very talented, thats why so many companies hire them to check their security, better word for them “White Hat Hackers”

     
    Comment by Joel
    2008-02-25 20:27:15

    wow! I’d never heard of this one before.

     
    2008-03-28 11:59:30

    [...] browser !!Rumor : Sony Ericsson to launch G series mobiles G900i and G700i !!! Where’s Xperia ??Shocking : hacked Antivirus website installs virus on Visitor’s computerMobile phones camera rejoice : Kodak introduces 1.4 micron, 5-megapixel CMOS sensorFight for [...]

     
    Comment by Arthritis
    2008-04-30 18:36:23

    milw0rm is the site that is full with all kind of exploits. You can learn a lot of thing there! :) (devil) :P

     
    Comment by Kanak Bhandari
    2008-05-11 01:13:08

    need to check :D

     
    Comment by Music news
    2009-10-05 17:48:12

    As a security professional / ethical hacker… part of my job is to attempt to hack into a company in order to find vulnerabilities before an attacker so that the company can secure those vulnerabilities…

     
    Comment by Music news
    2009-10-05 17:49:07

    It is also vitally important to ensure your operating system and any programs you use are properly configured, completely up to date with security patches and bug fixes… especially windows updates.

     
    Comment by lalji
    2009-10-05 21:16:30
     
    Comment by Baby Slings
    2009-11-20 10:28:59

    Turn off system monitoring,then turn it back on.This will delete it ,if it is in your memory.Then check to see if its(virus)in your start up programs.

     
    Name (required)
    E-mail (required - never shown publicly)
    URI

    Your Comment (smaller size | larger size)
    You may use <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> in your comment.