Sunday, January 24, 01:26
Home security Microsoft: Distribute malware through movies from pirated streaming sites

Microsoft: Distribute malware through movies from pirated streaming sites

The pirate streaming sites for movies used by millions users. The Microsoft says that during this time, this phenomenon is even more common due to forced confinement. But cybercriminals are taking advantage of this situation to contaminate. victims with malware delivered through fake movie torrents.

"As lockdown continues in many parts of the world, attackers are paying attention to the increasing use of pirates. streaming sites and torrent downloads, ”said the Microsoft research team.

"We saw one mining campaign cryptocurrency which introduces one malicious VBScript in archives ZIP presented as film downloads ”.

Fake movies install coin miners in memory

The attackers behind this campaign are mainly targeting household users from Spain and some South American countries. Their goal is installing a coinminer in the memory of the compromised device.

The malicious one VBScript is "camouflaged" using popular Hollywood movies such as: John Wick: Chapter 3 - Parabellum and is delivered using filenames such as "John_Wick_3_Parabellum" and "contagio-1080p", as well as Spanish titles: "Punales_por_la_espalda_BluRay_1080p", "La_hija_de_un-dejo -ra" and ".

If victims run VBScript on their computers, the installation of other malicious payloads in the background, with abuse living-off-the-land binaries (LOLbins), as legal tool command-line BITSAdmin.

One of these additional malware is one AutoIT script which decodes a second-stage DLL in memory of the infected computer, which will then load a third DLL that imports cryptocurrency mining code.

"The use of torrent downloads is in line with our observation that intruders are re-using old techniques to take advantage of the current crisis," Microsoft added.

Oscar-winning films are also being used as baits for phishing attacks

The attackers also take advantage of Movies with Oscar awards to entice them users and infect them with malware. They may also be lured into phishing pages to steal financially and personally data.

Of course, this is nothing new. Popular movies and TV shows are often used as baits for social engineering. Many times, the hackers promise movie previews on pirated streaming sites, while actually infecting victims' computers with malware.

Her researchers Kaspersky found more than 20 phishing websites and 925 malicious files that were presented as free movies, just to attack user".

"To avoid being deceived, do not use pirated streaming sites, but legally, to ensure that you can enjoy a nice night in front of the TV without having to worry about various threats," said the researchers.

LEAVE ANSWER

Please enter your comment!
Please enter your name here

Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

LIVE NEWS

Instagram: How to enable notifications for specific profiles

There are some profiles on Instagram where you want to see the content they publish as soon as possible - it can be a news ...
00:01:55

NASA's historic launch pad is to be demolished

NASA's famous Mobile Launcher Platform-2 launch platform, which has been linked to the Apollo and Space Shuttle missions, ...
00:02:12

Elon Musk: Gives $ 100 million for best CO2 capture technology

https://www.youtube.com/watch?v=Y0iUZc30vj4 Ο Elon Musk δήλωσε χθες, στο λογαριασμό του στο Twitter, ότι σκοπεύει να δώσει 100 εκατομμύρια...

How can you unblock sites and services using a VPN?

The Internet is free and open to all. However, there are some sites and services whose content is blocked, which ...

Google Chrome: How to manage your extensions?

Google Chrome extensions can be very useful, as they improve your productivity when using the browser.

Intel CPUs Review: Core i7-10700 vs Core i7-10700K!

Over the years, the Intel series of processors (CPUs) introduced the series of overclocking models "K" and more recently the series ...

The DeLorean can return as an electric car

The DMC DeLorean has been out of production for almost 40 years, but it looks like the iconic vehicle will return as an electric car.

Windows RDP servers are used to support DDoS

Cybercrime gangs are abusing Windows Remote Desktop Protocol (RDP) systems to reinforce the unwanted ...

SEPA: He refused to pay a ransom and thousands of files were leaked

Thousands of stolen files of the Scottish Environmental Protection Agency (SEPA) have been published by hackers, after the organization refused to pay the ransom ...

Fines at Valve, Capcom and Zenimax for geo-exclusion of games

Following a European Commission investigation, a group of video game publishers was fined € 7,8 million following allegations of geo-exclusion practices. In...