Cyber Criminals use Malaysia Airlines
Page 1 of 1
Cyber Criminals use Malaysia Airlines
Any occasion that captures public attention – regardless of how sensitive – comes out to be an opportunity for spammers and hackers to snatch users’ personal information and spread malware, and the tragedy of the crashed Malaysia Airlines flight MH17 is no exception.
According to the U.S. intelligence officials, Malaysia Airline Flight MH17, a Boeing 777 aircraft carrying 283 passengers and 15 crew members, was struck by a ground-to-air missile. So far, it’s unclear, whether the missile was launched by the Russian military or pro-Russian separatist rebels. Ukraine and the insurgents blamed each other.
Spammers and cybercriminals are quick to take advantage of the tragedy and started spreading malware through the social media websites, abusing the mystery behind the crash of Malaysia Airline Flight MH17.
Researchers at the anti-virus firm Trend Micro came across some suspicious tweets written in Indonesian language. The cybercriminals are using the trending #MH17 to lure innocent users who are actually looking for news related to Malaysian Airplane Flight MH17 crash down.
The suspicious tweets started spreading just after Malaysian Airline tweeted on July 17: “Malaysia Airlines has lost contact of MH17 from Amsterdam. The last known position was over Ukrainian airspace.”
Hundreds of users have already retweeted those malicious tweets that indirectly encourage their individual followers to visit the malicious links.
Moreover, the shared hosting also provide hostage to a number of malicious domains as well, that are connected to a ZeuS variant and SALITY malware. ZeuS are very well known to steal financial information of the users, while SALITY is a “malware family of file infectors that infect .SCR and .EXE files,” researchers said in a blog post.
“Once systems are infected with this file infector, it can open their systems to other malware infections thus compromising their security.”
This is not first time cyber criminals targeted Malaysian airlines. Also few months back, spammers targeted missing Malaysian plan and spread malware on the social networking sites including Facebook, abusing the mystery behind the Malaysia Airline Flight MH370, a Boeing 777-200 aircraft that had gone missing by the time it flew from Kuala Lumpur to Beijing.
The suspicious tweets started spreading just after Malaysian Airline tweeted on July 17: “Malaysia Airlines has lost contact of MH17 from Amsterdam. The last known position was over Ukrainian airspace.”
Hundreds of users have already retweeted those malicious tweets that indirectly encourage their individual followers to visit the malicious links.
The website belongs to a shared hosting located in U.S which also host number of legitimate domains and researchers concluded that the purpose behind the spam campaign could be to gain attention of the visitors in order to make money from the advertisement.
Moreover, the shared hosting also provide hostage to a number of malicious domains as well, that are connected to a ZeuS variant and SALITY malware. ZeuS are very well known to steal financial information of the users, while SALITY is a “malware family of file infectors that infect .SCR and .EXE files,” researchers said in a blog post.
“Once systems are infected with this file infector, it can open their systems to other malware infections thus compromising their security.”
This is not first time cyber criminals targeted Malaysian airlines. Also few months back, spammers targeted missing Malaysian plan and spread malware on the social networking sites including Facebook, abusing the mystery behind the Malaysia Airline Flight MH370, a Boeing 777-200 aircraft that had gone missing by the time it flew from Kuala Lumpur to Beijing.
http://thehackernews.com/2014/07/cyber-criminals-use-malaysia-airlines.html
Trinity-
Posts : 12923
2014-04-17
Re: Cyber Criminals use Malaysia Airlines
'Real Fotage of Malaysian Flight MH 17 Shot Down ' Facebook Spam Spreads Malware
A distasteful trend among the cyber crooks have began these days that they left no occasion, either good or bad, to snatch users’ financial information in order to make money as well as spread malware to victimize users.
The tragedy of the crashed Malaysia Airlines flight MH17 is no exception for the criminal minds. They are exploiting the disaster that took place last week in the disputed territory.
All related to Malaysian Airline Flight MH17, a Boeing 777 aircraft carrying 283 passengers and 15 crew members, that was shot down over eastern Ukraine on July 17 by a ground-to-air missile. So far, its unclear that who is behind the tragic incident, while Ukraine and the insurgents blamed each other.
Within just a week, at least six bogus Facebook pages that popped up the names of the Boeing 777 victims. According to the Australia’s Sydney Morning Herald, three of the fraudulent pages were created in the names of children who were on the plane and died.
The bogus Facebook pages were came out to be click fraudsters, in which the site visitors are served a link to a phony website containing detailed information about the MH17 plane crash. Once clicked, users are then hit with a series of pop-up ads for online gambling sites and other shady services. The pages have since been shut down by Facebook , but this doesn’t stop scammers.
I too caught a fake video circulating on Facebook with a fake message that promises to provide a real footage of the missile bringing down the aircraft. It baited people to click on another website with a link purporting to show footage of the MH17 disaster.
Obviously, I didn’t chose that, but even if you do or not , in both cases the site will redirect users to another domain that will prompt users to download a video player (windows executable file) in order to play the video successfully.
People who desires to watch the MH17 Flight’s shot down video, it will lead users downloading malware into their systems or potentially unwanted applications (PUPs), similar to what we have seen in many other [url=http://thehackernews.com/search/label/Facebook spam]spam campaigns[/url] of the types.
This is neither the first nor will be the last attempt of cyber criminals to leverage the tragedy of MH17 Malaysian airliner. Last week, cyber crooks used Twitter platform to widely spread short links that directed victims to the web pages known to have been linked with a variant of Zeus Trojan and the Sality malware as well, in order to steal financial information of the victims and to infect their systems with the malwares.
We strictly recommend you to do not trust such videos rather follow various reputed news websites in order to get legitimate information about the incidents. Stay Safe!
http://thehackernews.com/2014/07/real-footage-of-malaysian-flight-mh-17.html
I too caught a fake video circulating on Facebook with a fake message that promises to provide a real footage of the missile bringing down the aircraft. It baited people to click on another website with a link purporting to show footage of the MH17 disaster.
As other click fraudsters, when I clicked on the video purporting to provide access to entire footage of the tragic incident, it prompted me to share it with my other Facebook friends in order to play the video, so that the bogus video could spread to other users and so on.'Video Camera Caught the moment plane MH17 Crash over Ukraine.Watch here the video of Crash,' the link read.
Obviously, I didn’t chose that, but even if you do or not , in both cases the site will redirect users to another domain that will prompt users to download a video player (windows executable file) in order to play the video successfully.
People who desires to watch the MH17 Flight’s shot down video, it will lead users downloading malware into their systems or potentially unwanted applications (PUPs), similar to what we have seen in many other [url=http://thehackernews.com/search/label/Facebook spam]spam campaigns[/url] of the types.
This is neither the first nor will be the last attempt of cyber criminals to leverage the tragedy of MH17 Malaysian airliner. Last week, cyber crooks used Twitter platform to widely spread short links that directed victims to the web pages known to have been linked with a variant of Zeus Trojan and the Sality malware as well, in order to steal financial information of the victims and to infect their systems with the malwares.
We strictly recommend you to do not trust such videos rather follow various reputed news websites in order to get legitimate information about the incidents. Stay Safe!
http://thehackernews.com/2014/07/real-footage-of-malaysian-flight-mh-17.html
Trinity-
Posts : 12923
2014-04-17
Re: Cyber Criminals use Malaysia Airlines
TO DUTCH PEOPLE:
Accordin g to clear satellite images provided, on July 16th, the Ukrainian Army positioned 3-4 anti-aircraft BUK M1 SAM missile batteries close to Donetsk. These systems included full launching, loading and radio location units, located in the immediate vicinity of the MH17 crash site. One system was placed approximately 8km northwest of Lugansk. On July 17th, the day of the incident, these batteries were moved to a position 8km south of Shahktyorsk. From July 18th, after the downing of MH17, Kiev’s BUK launchers were then moved away from the firing zone.
Accordin g to clear satellite images provided, on July 16th, the Ukrainian Army positioned 3-4 anti-aircraft BUK M1 SAM missile batteries close to Donetsk. These systems included full launching, loading and radio location units, located in the immediate vicinity of the MH17 crash site. One system was placed approximately 8km northwest of Lugansk. On July 17th, the day of the incident, these batteries were moved to a position 8km south of Shahktyorsk. From July 18th, after the downing of MH17, Kiev’s BUK launchers were then moved away from the firing zone.
Yehudi- Posts : 14715
2014-04-20
Re: Cyber Criminals use Malaysia Airlines
Ništa se više ne piše o onome prvom Boeing-u kojega su "tražili" na drugom kraju Svijeta, 180 stupnjeva u obrnutom smjeru a samo radi nagadjanja. Šta se ovoga drugog tiče,teško da će se ikakda doznati prava istina. No naslutiti se može u svakom slučaju. Sad se eto ubacuju i virusi u sve te lažne vijesti,nije to samo spam,već totalno zamagljivanje i opstruiranje priče. I onda opet spontano pada na pamet pitanje -tko imakoristi od toga. I sve postaje puno jasnije.
Yehudi- Posts : 14715
2014-04-20
Re: Cyber Criminals use Malaysia Airlines
Where is the satellite image that the US claimed they had , showing that either Russia or the rebels were responsible for MH17?
Yehudi- Posts : 14715
2014-04-20
Similar topics
» Croatia Airlines -
» American Airlines 737 pao u Havani
» Montenegro Airlines: Ovo je HAOS!
» Montenegro Airlines bankrotirao!
» Croatia Airlines - Horror Film
» American Airlines 737 pao u Havani
» Montenegro Airlines: Ovo je HAOS!
» Montenegro Airlines bankrotirao!
» Croatia Airlines - Horror Film
Page 1 of 1
Permissions in this forum:
You cannot reply to topics in this forum