Rogue AV Masquerades as a Firefox/Flash Update
It seems that rogue peddlers have gotten tired of their old tricks in pushing rogueware into the user's system. It used to be a fake scanning page, that leads to a warning, then a fake AV.
Now, it comes as the Firefox "Just Updated" page. You know that page that instantaneously appears right after you update your Firefox browser? And you open Firefox for the first time? Just like that. But with a catch of course. There is a message telling the user than even if their Firefox got updated, their Adobe Flash Player isn't. So they still have to update. Pretty helpful…
Tax Day Freebies
Google's Online Security Blog had a very interesting post yesterday regarding fake antivirus. Google has been working to protect their users since March 2007, when they first discovered fake AV. (We, and other security vendors, have been writing about the issue of rogues since at least July 2006.)
Downadup-Related Search Indexes Poisoned with Fake AV Sites
With Downadup/Conficker rising to celebrity status in the computer worm world, Symantec (along with other companies in the security industry) is hard at work, keeping our customers protected. But guess who else is hard at work at the moment? Yes, the authors of misleading applications. It isn’t the first time that they have latched onto popular news to fuel their malicious intent using search engine optimization (SEO).