Shortened URLs can lead to Malware

Discussion in 'malware problems & news' started by StevieO, Jun 24, 2009.

Thread Status:
Not open for further replies.
  1. StevieO

    StevieO Registered Member

    Joined:
    Feb 2, 2006
    Posts:
    1,067
    Saw this on http://blogs.zdnet.com/security/?p=3669


    " The Twitter account belonging to venture capitalist and Mac evangelist Guy Kawasaki was hijacked yesterday and used to push malware to some 140,000 Twitter users. The attack (screenshot above) included a link to what purported to be a sex tape video free download linked to Gossip Girls star Leighton Meester but, after a series of clicks, the end result was a malicious Trojan "

    " leads you to a malicious website designed to infect both Macs and PCs "


    http://bit.ly is used to shorten URLs. This hasn't gone unnoticed by the bad guys as a way to obfuscate Malicious links.

    hxxp://twitter.com/GuyKawasaki/statuses/2300623174

    hxx://bit.ly/app/warning?url=http%3a%2f%2fwww.nowpublic.com%2fculture%2fleighton-meester-sex-tape-video-free-download&hash=M2QA5&class=surbl

    hxxp://www.nowpublic.com/node/2375907/preview?login=1&dest=node/2375907/preview

    You will not be able to get there as you need to enter your user name and password to sign in.
     
  2. Rmus

    Rmus Exploit Analyst

    Joined:
    Mar 16, 2005
    Posts:
    3,943
    Location:
    California
  3. JRViejo

    JRViejo Global Moderator

    Joined:
    Jul 9, 2008
    Posts:
    20,917
    Location:
    U.S.A.
  4. TonyW

    TonyW Registered Member

    Joined:
    Oct 12, 2005
    Posts:
    2,633
    Location:
    UK
    SHUURL provides a preview of the shortened URL plus a safety rating courtesy of WOT.
     
Loading...
Thread Status:
Not open for further replies.