General
|
Written by Daniel
|
Friday, 31 August 2007 11:19 |
Storm Hits Blogger
The ubiquitous Storm Trojan has found a new home – on spam blog sites in Google's Blogger network AUGUST 30, 2007 | 4:53 PM By Kelly Jackson Higgins Senior Editor, Dark Reading
Careful whose blog you're reading these days: Researchers have discovered the Storm Trojan nestled in hundreds of blog sites in Google's Blogger network. This Storm infection is not simple comment spam, where spammers post their junk messages and malware as blog comments. "These are blogs that post spam," says Alex Eckelberry, CEO of Sunbelt Software, who has been studying the posts. He says he hasn't seen any legitimate blogs bites being hacked and sprinkled with Storm, but he's still researching the trend.
Eckelberry, who first discovered Storm executable files on several blogger sites this week, says Storm is showing up on blogs that use the mail-2-blogger feature, where bloggers can post via email. Google does have a CAPTCHA defense in place to prevent this kind of infection, requiring some bloggers to manually enter their code in order to post their blogs.
"But these guys are somehow flying under the radar," Eckelberry says. "I have no idea how they are doing this."
One site he found that's laden with Storm as well as spam junk is http://www.visionbuzz.blogspot.com/, for instance. And a Google search for Storm's infamous keywords, including "dude what if you wife finds this" and "man your insane," comes up with hundreds of blog sites, he says.... More
Comment in the Forums |