Spyware Sucks
“There is no magic fairy dust protecting Macs" – Dai Zovi, author of “The Mac Hacker’s Handbook"

ALERT: Malvertizing at guardian.co.uk

April 26th 2009 in Uncategorized

There are two of them, both featuring HP (the ads have been documented on this blog in the past).

Both advertisements are being served via 2mdn.net and have been reported to the appropriate parties.







2 comments to...
“ALERT: Malvertizing at guardian.co.uk”

Conrad Longmore

These look like they are geotargetted to the US and Canada. Visitors elsewhere (e.g. the UK) may not have been exposed.

OneVision UK Ltd. have some software, Contenio, which will catch this kind of advertisement containing malware, either on your local server or on adserver. OneVision can install this for you to test, or firstly just send us one / some of the offending advert files and we will report back to you. Or call me 07799 767671. barry.tweddell@onevision.com

The malvertizements have been reported to blogads.com. z.blogads.com/www/delivery/afr.php?n+a91736e9&zoneid=86&cb=INSERT_RANDOM_NUMBER_HERE z.blogads.com/www/delivery/afr.php?n+aa00ce7a&zoneid=87&cb=INSERT_RANDOM_NUMBER_HERE   The adverts hit statcluster.com, enjoyspringtime.com and crustat.com (all known bad domains).

Previous Entry

  Edited to fix subjectline It is a malvertizement featuring HP (visually identical to the HP malvertizement described in my earlier article): http://msmvps.com/blogs/spywaresucks/archive/2009/02/28/1674634.aspx The malvertizement itself is at this URL: m1.au.2mdn.net/1949664/hp_300x250.swf Adopstools test results here: http://www.adopstools.com/index.asp?section=quicklink&id=ZdWLlE0YcK7rkK5C […]

Next Entry