AplusWebMaster
Topic Starter
FYI…
- http://www.f-secure.com/weblog/archives/ar…7.html#00001144
March 19, 2007 ~ "We've seen another attack using an insecure feature of QuickTime called HREF Tracks. This is a feature that can specify movies from other links to automatically open simultaneously when the movie is run. With the QuickTime sample that we received, it will try to download and execute a spying JavaScript from this website:
profileawareness .com/logs4/[removed].js
We detect the JavaScript as Trojan-Spy:JS/Spacestalk.A. We detect the downloader as
Trojan-Downloader:JS/Spacestalk.A…. The said script collects MySpace information from the user that includes Username, FriendID, MySpace Display Name, and other logins of the user, and sends this information back to the tracking server at profileawareness .com together with the current URL as well as the current referrers' page."
(Screenshot available at the URL above.)

- http://www.f-secure.com/weblog/archives/ar…7.html#00001144
March 19, 2007 ~ "We've seen another attack using an insecure feature of QuickTime called HREF Tracks. This is a feature that can specify movies from other links to automatically open simultaneously when the movie is run. With the QuickTime sample that we received, it will try to download and execute a spying JavaScript from this website:
profileawareness .com/logs4/[removed].js
We detect the JavaScript as Trojan-Spy:JS/Spacestalk.A. We detect the downloader as
Trojan-Downloader:JS/Spacestalk.A…. The said script collects MySpace information from the user that includes Username, FriendID, MySpace Display Name, and other logins of the user, and sends this information back to the tracking server at profileawareness .com together with the current URL as well as the current referrers' page."
(Screenshot available at the URL above.)