Slashdot Mirror


Banner Ad on Myspace Serves Adware to 1 Million

An anonymous reader writes "Washingtonpost.com's Security Fix blog reports that a banner ad running on MySpace.com and other Web sites used a Windows security flaw to push adware and spyware out to more than one million computer users this week. The attack leveraged the Windows Metafile (WMF) exploit to install programs in the PurityScan/ClickSpring family of adware, which bombards the user with pop-up ads and tracks their Web usage."

34 of 390 comments (clear)

  1. Excellent. by Anonymous Coward · · Score: 5, Funny

    Darwinism works!

    1. Re:Excellent. by Anonymous Coward · · Score: 1, Funny

      did this effect kubuntu?

    2. Re:Excellent. by jZnat · · Score: 4, Funny

      Well, it surely wasn't Intelligent Design that did it...

      --
      'Yes, firefox is indeed greater than women. Can women block pops up for you? No. Can Firefox show you naked women? Yes.'
    3. Re:Excellent. by Anonymous Coward · · Score: 3, Funny

      ...Which is pathetically ironic given that people here don't get laid.

    4. Re:Excellent. by ultranova · · Score: 4, Funny

      ...Which is pathetically ironic given that people here don't get laid.

      Hah! A real master nerd is never unprepared. I'll watch the whole run of Nuku-Nuku for inspiration and build myself a catgirl android lover, and we'll make dozens of cyborg kittens together.

      Take that, natural selection!

      --

      Forget magic. Any technology distinguishable from divine power is insufficiently advanced.

  2. WMF Exploit Now Affects Mac Users! by robotsrule · · Score: 2, Funny

    There is a new variant of the WMF exploit that affects all Mac users running OS X. When a Mac user browses a web page that is displaying a banner ad with the WMF exploit, malicious code is run that silently installs Windows Vista on to the Mac users computer thereby completely replacing OS X with Vista.

    --


    Robert Oschler - RobotsRule.com
    1. Re:WMF Exploit Now Affects Mac Users! by jZnat · · Score: 2, Funny

      Sources indicate that OSX users only noticed because their computer started to "crash a lot". "I didn't even notice the change to be quite honest," an anonymous user explained. "Only that the buttons moved to the other side of the window."

      --
      'Yes, firefox is indeed greater than women. Can women block pops up for you? No. Can Firefox show you naked women? Yes.'
    2. Re:WMF Exploit Now Affects Mac Users! by MobileTatsu-NJG · · Score: 3, Funny
      Sources indicate that OSX users only noticed because their computer started to "crash a lot". "I didn't even notice the change to be quite honest," an anonymous user explained. "Only that the buttons moved to the other side of the window."


      Users further complained that their productivity shot way down when a number of games mysteriously started working.
      --

      "I like to lick butts!" by MobileTatsu-NJG (#32700246) (Score:5, Informative)

  3. Re:First time? by hendridm · · Score: 5, Funny
    Makes me question myspace, you'd think they have people watching for these sorts of attacks.

    Hah, that's like finding a loaded diaper in a garbage dump and then complaining about the level of sanitation.

  4. All your Myspace are belong to us? by davidwr · · Score: 5, Funny

    "It's called My Space not Your space for a reason."
        -MySpace Vice President In Charge Of Revenue Generation

    --
    Knowledge is how to play a game, intelligence is how to win, wisdom is knowing what game to play.
  5. Just update by bigtimepie · · Score: 5, Funny
    From the article:
    Microsoft released a patch in January to fix a serious security flaw in the way Windows renders WMF
    What is clear from this attack is that there are plenty of people who still haven't installed this security update from Microsoft.
    If your OS puts out a security fix, it's probably for a reason. This could have been avoided for everyone just by keeping up-to-date.
    1. Re:Just update by hyfe · · Score: 2, Funny
      If your OS puts out a security fix, it's probably for a reason. This could have been avoided for everyone just by keeping up-to-date.
      I'm a bit unsure if this is irony or not

      If it's not. I just want to mention 'Windows Genuine Advantage', the oh-so-very critical security fix. Sure, it's there for a reason, but that reason ain't your computers well-being!

      --
      "" How about taking the safety labels off everything, and let the stupidity-problem solve itself? """
    2. Re:Just update by smash · · Score: 3, Funny
      Upgrade from XP to 2000, which doesn't insist on installing WGA before you can install updates, runs faster, and generally pisses you off less by trying to do stuff behind your back.

      Less security problems as well :D

      --
      I run: Windows, OS X, Linux, FreeBSD. Just because you have a hammer, doesn't mean everything is a nail.
  6. Re:why? by kjart · · Score: 4, Funny

    Anyone who protests tracking of their web usage obviously hates america.

    Exactly - every time you delete a cookie an american flag bursts into flame.

  7. Re:Prosecute virus creating companies. by Ethan+Allison · · Score: 5, Funny

    People on non-Windows platforms are generally not the targets of ads, as indicated by XP-styled "message box" banners.

  8. Re:Heh, on Facebook too. by rhizome · · Score: 4, Funny

    I'd ban the advertising company from my site after a stunt like this, no matter how much money they bring in.

    Let me guess, you generally don't receive advertising money.

    --
    When I was a kid, we only had one Darth.
  9. Re:why? by GodOfCode · · Score: 3, Funny

    > Exactly - every time you delete a cookie an american flag bursts into flame. So what happens when you clear all cookies from you machine?

  10. The shocking part is.... by Rapier · · Score: 4, Funny

    The shocking part is that there are still people using Windows. I've got a laptop sitting around here with Windows on it that I use as a novelty once in a while, but it's not like it can really do anything useful. The package management system is horribly antiquainted, the dependancy checking leaves a lot to be desired, and then there are the security holes in the stock applications that come with the OS. Maybe some day it will mature enough to be useful, but for now it's just a novelty that still isn't up to being used in a production environment.

    1. Re:The shocking part is.... by the_xaqster · · Score: 2, Funny

      ....You did not realise that the loud Whoooshing noise was the joke going over your head.

      --
      I'm just here to regulate Funkyness
  11. Re:why? by Stormwatch · · Score: 3, Funny
    Exactly - every time you delete a cookie an american flag bursts into flame.
    So what happens when you clear all cookies from you machine?
    The USA will become an islamic republic.
  12. Unfortunately, the elevator riders are right... by patio11 · · Score: 2, Funny

    ... they DO end up with less stench on them at the top of the ride than at the bottom, since convervation of mass means that the stuff suffocating me had to come from somewhere...

  13. Re:why? by max99ted · · Score: 4, Funny
    Exactly - every time you delete a cookie an american flag bursts into flame. So what happens when you clear all cookies from you machine?

    God kills an American kitten.

    --

    Please stop APK.. you're only hurting yourself.

  14. Re:Prosecute virus creating companies. by Anonymous Coward · · Score: 1, Funny

    > And they wonder why consumers want to block all ads. Its because of illegal virus ads like this.

    Well, not *just* this. Personally I started blocking adds the moment they started making fscking noise at me. I also developed an irrational dislike of frogs at around the same time. Coincidence... I think not.

  15. Finally a use for small tubes by bblboy54 · · Score: 1, Funny

    I have no fear of this type of internets. Until betting on horse races becomes a common place in every American's house, the tubes will be entirely too clogged to deliver this to me.

  16. Viral marketing by Opportunist · · Score: 3, Funny

    So that's what's meant by that term?

    (You know I've been waiting to say that for weeks now)

    --
    We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
  17. Only when a Domokun masterbates! NT by Anonymous Coward · · Score: 1, Funny

    I hear kittens taste like chicken, but I prefer mine raw.

  18. Re:Prosecute virus creating companies. by panaceaa · · Score: 3, Funny

    OMG WTF I THOUGHT THOSE WERE POP-UPS BY HACKERS!!! when i pressed the "X" it still went to there page!!!!! those are the ppl we should really be suing$@!one!!

  19. Same thing on OKCupid... by Max+Threshold · · Score: 4, Funny
    I encountered an ad which prompted me to download a file called 'exp.wmf'.

    Yes, it's an online dating site. No, I haven't met anyone on there yet. Shut up.

    1. Re:Same thing on OKCupid... by tritonic · · Score: 2, Funny

      But if you do, offering to disinfect their PC could be a great pick-up line...

  20. Doesn't matter by Frightening · · Score: 4, Funny

    Most people on MySpace have so much spyware to begin with that no change was noticed in their daily activity.

  21. Re:Virus/adware-spreading ads by FlyingCheese · · Score: 3, Funny

    The Government is spying on you and killing off people who speak bad about the government. The whole "Freedom" thing is a public face, the original writers of the Constitution are a mysterious and well hidden group that has links to The Masons and Illuminati.

    Can I substantiate this? Yes. Will I substantiate it? No.

    I don't care if anyone believes me. Just remember, you heard it here first.


    Oh and pass the bong, dude. Thanks.

  22. Re:Prosecute virus creating companies. by cdrudge · · Score: 2, Funny

    You are underestimating the power that $.0000001 per ad can generate.

  23. No way! You're kidding me! by Valdrax · · Score: 2, Funny

    So if you're not a Windows or Mac OS X (PowerPC) user, you're SOL.

    You mean to tell us that a site that is pratically a shrine to petty teenage popularity contests, cliquishness, and ad-whoring for the biggest businesses in the world only supports the two OSes used by more than 2% of the market!?

    Holy crap! What is the world coming to?

    --
    If it's for-profit but free, you're not the customer -- you're the product (e.g., the Slashdot Beta's "audience").
  24. umm.... by 1800maxim · · Score: 3, Funny

    Yup! The virus evolved by itself from random bits and used WMF as a host, and then became active on users' PCs.... ;)