{"id":367072,"date":"2010-02-26T15:30:59","date_gmt":"2010-02-26T20:30:59","guid":{"rendered":"http:\/\/www.szone.us\/f85\/malicious-web-site-malicious-code-searching-joannie-rochette-leads-rogue-av-40069\/"},"modified":"2010-02-26T15:30:59","modified_gmt":"2010-02-26T20:30:59","slug":"malicious-web-site-malicious-code-searching-for-joannie-rochette-leads-to-rogue-av","status":"publish","type":"post","link":"https:\/\/mereja.media\/index\/367072","title":{"rendered":"Malicious Web Site \/ Malicious Code: Searching For Joannie Rochette Leads To Rogue AV"},"content":{"rendered":"<div>02.25.10 04:00 PM<\/p>\n<p>Websense Security Labs? ThreatSeeker? Network has detected that the black hat Search Engine Optimization (<acronym title=\"Search Engine Optimization\">SEO<\/acronym>) techniques are abusing the name of an Olympic figure skater who is very popular in recent news.<\/p>\n<p>\n<a href=\"http:\/\/sports.yahoo.com\/olympics\/vancouver\/CAN\/Joannie+Rochette\/1012611\" >Joannie Rochette <\/a>is a Canadian figure skater and the 2009 world silver medallist. In the 2010 Winter Olympics in Vancouver, despite the loss of her mother just 48 hours before her competition, she delivered a sensational <a href=\"http:\/\/www.nbcolympics.com\/video\/assetid=df674667-721b-4991-9d12-0066cefb8696.html\" >performance<\/a> and qualified to compete for gold. <\/p>\n<p>The bad guys still took advantage of this tragic incident and used it in the infamous Black <acronym title=\"Search Engine Optimization\">SEO<\/acronym> poisoning attacks. Searching for Joannie Rochette in reputable search engines leads to rogue AV.<\/p>\n<p>This use of the Black <acronym title=\"Search Engine Optimization\">SEO<\/acronym> technique is even more pertinent now that the results have been announced, with Rochette receiving a <a href=\"http:\/\/sports.espn.go.com\/olympics\/winter\/2010\/figureskating\/columns\/story?columnist=ford_bonnie_d&amp;id=4947971\" >bronze medal<\/a> for her performance. <\/p>\n<p><img decoding=\"async\" src=\"http:\/\/securitylabs.websense.com\/content\/Assets\/AlertMedia\/alert_joannie_rochette_1.png\" border=\"0\" alt=\"\" \/><\/p>\n<p><img decoding=\"async\" src=\"http:\/\/securitylabs.websense.com\/content\/Assets\/AlertMedia\/alert_joannie_rochette_2.png\" border=\"0\" alt=\"\" \/><\/p>\n<p>Once the victim clicks on the poisoned search results, he\/she is redirected to the rogue AV page, and a <a href=\"http:\/\/www.virustotal.com\/analisis\/fad707f2f6c7b49a287516907b0bdace0a881e9ed3cc723935b36bccd1d673f9-1267157888\" >fake Anti-virus<\/a> executable asks for the victim&#8217;s confirmation before being downloaded. <\/p>\n<p>This isn&#8217;t the first time Black <acronym title=\"Search Engine Optimization\">SEO<\/acronym> attacks <a href=\"http:\/\/isc.sans.org\/diary.html?storyid=8239\" >target<\/a> events and figures related to the olympics this year. <\/p>\n<p>Websense\u00ae Messaging and Websense Web Security customers are protected against this attack. <\/p>\n<p><a href=\"http:\/\/securitylabs.websense.com\/content\/Alerts\/3561.aspx\" >http:\/\/securitylabs.websense.com\/con&#8230;erts\/3561.aspx<\/a><\/div>\n","protected":false},"excerpt":{"rendered":"<p>02.25.10 04:00 PM Websense Security Labs? ThreatSeeker? Network has detected that the black hat Search Engine Optimization (SEO) techniques are abusing the name of an Olympic figure skater who is very popular in recent news. Joannie Rochette is a Canadian figure skater and the 2009 world silver medallist. In the 2010 Winter Olympics in Vancouver, [&hellip;]<\/p>\n","protected":false},"author":4744,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-367072","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/367072","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/users\/4744"}],"replies":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/comments?post=367072"}],"version-history":[{"count":0,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/367072\/revisions"}],"wp:attachment":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/media?parent=367072"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/categories?post=367072"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/tags?post=367072"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}