Twenty-Four Seven Security

Peter Schooff

The Superbowl Hack

user-pic
Vote 0 Votes

According to Websense, the internet site for Dolphin Stadium, which hosted yesterday's Superbowl, played inadvertent host to a trojan horse program that will download a keystroke-logging machine on any Window's machine that hasn't obtained the latest upgrades. As you can guess, the site is experiencing heavy traffic, and according to Websense, what happens is:

"A link to a malicious javascript file has been inserted into the header of the front page of the site. Visitors to the site execute the script, which attempts to exploit two vulnerabilities: MS06-014 and MS07-004. Both of these exploits attempt to download and execute a malicious file.

The file that is downloaded is a NsPack-packed Trojan keylogger/backdoor, providing the attacker with full access to the compromised computer. The filename is w1c.exe and its MD5 is ad3da9674080a9edbf9e084c10e80516."

So please just remember to keep updating.

No TrackBacks

TrackBack URL: http://www.ebizq.net/MT4/mt-tb.cgi/10777

Leave a comment

Peter Schooff's blog is a daily look at what's going on in the world of computer security with an emphasis on how it affects businesses.

Peter Schooff

Peter Schooff is Managing Editor at ebizQ. Peter is also very popular blogger in IT Security space. Prior to this Peter managed the database operations for a major cigar company, served as writer/editor of an early internet entertainment site, and also developed a computer accounting system for several retail stores. Peter can be reached at pschooff (at) ebizQ.net and at (914) 712-1500 ext. 273.


Recently Commented On

Monthly Archives

ADVERTISEMENT