Security [CENTRAL] Forum - SCforum.info
09. September 2010., 13:00:30 *
Welcome, Guest. Please login or register.

Login with username, password and session length

Custom Search
News: New Giveaway @ SCF, Very Soon! Stay Tuned. Wink
 
  Home   Forum   Help Chess Links Login Register   *

SCforum.info




SCF Recent Posts
[09. September 2010., 07:39:01]

[09. September 2010., 06:41:57]

[09. September 2010., 06:08:54]

[08. September 2010., 13:43:32]

[07. September 2010., 16:06:32]

[07. September 2010., 15:54:04]

[07. September 2010., 05:42:21]

[07. September 2010., 05:28:16]

[07. September 2010., 05:12:04]

[06. September 2010., 18:38:01]
SCF Translate


Members
Total Members: 4846
Latest: Bradmiller2013
Stats
Total Posts: 11017
Total Topics: 3377
Online Today: 1088
Online Ever: 51419
(01. January 2010., 10:27:49)
Users Online
Users: 11
Guests: 1188
Total: 1199

@MEMBER OF PROJECT HONEY POT
Spam Harvester Protection Network
provided by Unspam

Friend of WOT

Creative Commons License

SCF Feedburner

SCF Facebook

SCF Twitter

Welcome to SCforum.info - Security [CENTRAL] Forum, a home of the SCF Community devoted to provide Computer related News, Alerts, Downloads and FREE Help in such a way that even the novice computer user can understand.

Getting started using our community is extremely easy, check the two steps below:

Step 1: Create an account by clicking here. It's completely free with no hidden strings attached.

Step 2: If you have a computer problem and need some help, or just want to take part in opened discussions, simply visit: "FORUM". Once you *Register an account, you can quickly post your questions and comments.

(*Registered Members get: free support, also, they can communicate privately with other members via PM, removal of this message, see fewer ads and much more...)






Pages: 1
  Print  
Author Topic: Stealthy click fraud tool exploits 9ball attack  (Read 336 times)
0 Members and 1 Guest are viewing this topic.
mike2009
SCF Member
**

KARMA: 1
Posts: 14


« on: 03. July 2009., 04:58:10 »



Miscreants have developed one of most sophisticated click fraud malware applications to date.

The Trojan code - dubbed FFsearcher by security firm SecureWorks - plugs into a Google API that allows webmasters to add a Google-powered search widget (called "Google Custom Search") to their website. In normal use, search results made via the widget are displayed alongside Google AdSense ads, with webmasters receiving a small fee every time a surfer follows an ad.

The malware hijacks this feature so that every search an infected user makes is performed through a search widget under their control, so that they get paid by Google every time a surfer clicks on a sponsored ad. Hackers have also worked out a means to pull off this sleight of hand without giving any indication to surfers that anything might be amiss. Google might find it hard to unravel instances of fraud.

As such, the attack is more sophisticated than previous click fraud approaches, which relied on tricks such as changing a surfer's start page and searches to point to a third-party search engine, types of behaviour that might more easily be detected. FFsearcher works on both IE and Firefox.

"Every click on an ad is user-generated, and the user never notices any change in their web-surfing experience," writes Joe Stewart, director of malware analysis at SecureWorks.

FFsearcher is part of the exploit bundle spread by the recent Nine-ball mass compromise, SecureWorks adds. A comprehensive write-up of the attack - complete with screenshots - can be found at http://secureworks.com/research/threats/ffsearcher.
Logged
Security [CENTRAL] Forum - SCforum.info
« on: 03. July 2009., 04:58:10 »



 Logged
Pages: 1
  Print  
 
Jump to:  

Enter your email address to receive daily email with 'SCforum.info - Security CENTRAL Forum' newest content:

Terms of Use | Privacy Policy
Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC
TinyPortal v0.9.8 © Bloc
Valid XHTML 1.0! Valid CSS!


Google visited last this page 30. August 2010., 08:26:07