Advertisement
Promo

Security threats Toolkit

Malware spoofs search sites

Alorie Gilbert CNET News.com

Published: 03 Oct 2005 09:40 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Security experts have discovered a malicious program aimed at tricking users into clicking on phoney search results on fake Google, Yahoo and MSN sites.

People with infected machines who try to visit those popular search sites are redirected to spoof versions, antivirus company Panda Software said Friday. The spoof sites serve up bogus search results intended to generate traffic and revenue for other sites that are presumed to be in on the scheme, said Patrick Hinojosa, Panda's chief technology officer.

"This is a business; this is organised crime," Hinojosa said. "People are making money on it."

Representatives from Google, Microsoft and Yahoo did not immediately return inquiries for comment.

Machines can become infected with the program, called PremiumSearch, when visiting Web sites that distribute pirated software and pornography, Panda reported. Hinojosa said he doesn't know how many machines have been infected.

Besides altered search results, the spoof sites are indistinguishable from the original version, the company said. The program also installs a fake Google toolbar that similarly interferes with results.

Hinojosa said Panda notified ISP that is hosting the spoof sites in the United States. He declined to name the ISP, noting that it might have already shut the sites down. Panda also notified federal authorities, including the FBI, he said.

Panda, which is based in Bilbao, Spain, makes software to combat viruses, worms, spyware and other unwanted programs. It discovered the PremiumSearch threat through its "early warning system".

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
67 out of 164 people found this useful


Full Talkback thread

0 comments


Video icon

Video

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters