Saturday, March 14, 2009

O Noes! We R Hacked!

I saw this dire warning this afternoon:


What to do?
Well, lets examine it for clues.
1. Windows Internet Explorer will not scan the PC for viruses, so we know we're being duped.
2. The word choice in the dialog sounds like it was translated directly from another language. Hilarious.
3. OK or Cancel? What would you choose? I chose to go to Process Explorer (or use Task Manager) and cancel iexplore.exe. Kill it right off. Choosing either OK or Cancel will yield the same result in that either click will be captured and launch a web site that downloads the payload. Then the real party starts.

As a precaution, I ran AVG, Malwarebytes, and Super Anti Spyware. All scans showed that there were no infections.

The moral of the story is to be ever vigilant and not to rely completely on the automated processes like security applications. Use common sense. Or you could always call me and ask.

No comments: