TweetFollow is an iPhone application available from http://www.b1te.com/tweetfollow/

 

Unfortunately for the application vendors though, tweetfollow.com (DON’T GO THERE) is also a domain that is hosting malicious JavaScripts that redirect the visitor to download malware.

 

In a textbook example of cybersquatting and trend surfing, these cybercriminals are banking on the popularity of both Twitter and the iPhone to maximise their infection rates. The site host a malicious JavaScript file which redirect the visitor and push malware down to their PC.

 

The JavaScript is called app_info_next_312.js and a quick search reveals almost 100 other servers hosting a JavaScript with the same name. Of course the name is meaningless in terms of detection and Trend Micro detect the malicious JavaScript (whatever name it goes under) as JS_IFRAME.AKK. The site distributing the malware is also blocked by the Smart Protection Network

 

Tweetfollow.com was registered on the 31st December 2008, and there appear to be 103 other websites hosted on the same server many of which contain similar malicious content. What is not yet clear is whether this server is a victim (of hacking) or a perpetrator, but what is clear is that you should avoid all links to this site for now.

No related posts.


This entry was posted on Tuesday, 17. March 2009 and is filed under "malware". You can follow any responses to this entry with RSS 2.0. You can leave a response here, or send a trackback from your own site.

3 Comments to "TweetFollow your way to infection"

Fake Twitter Application Site Infects Your PC | ComputerFinance.net:
Friday, 20. March 2009 um 3:40 am

[...] Read | Permalink | Email this | Comments [...]

webkataloge:
Monday, 27. April 2009 um 9:36 am

Good informations, keep up the good work.

Twitter followers fall foul of fake follows site | Naked Security:
Sunday, 17. October 2010 um 5:05 pm

[...] has been reported by Trend, new media luvvies Twitterers should beware! A recently registered domain tweetfollow DOT com, [...]


Name:

E-Mail (not published)

Website:


Spam protection


© Copyright 2010 Trend Micro Inc. All rights reserved.
Legal Notice | Disclaimer