/  5
BitDefender
Beijing E-Threats Olympics: Gold for Spam
Rãzvan Livintz, Communication Specialist
Definitely the most important sport event of the year 2008, with more than 10,000 athletes attending
300 events broadcasted live around the globe, the Games of the 29 Olympiad held in Beijing also lit up
th
the torch of the e-threats’ competition.
Spam Relay Race and Trojan Steeplechase

As predicted by the security analysts worldwide, the China Olympics gave a fresh start to the spam race.
Already a “well-established” presence when large scale events like this occur, the Olympics-associated e-
mail spam follows the “traditional” pattern, speculating the recipients interest in hot topics or moment’s
celebrities. Whether they focus on US swimmer Michael Phelps’ “gold rush” or Swedish archer Sara
Boberg’s nude pictures, the messages rely on a simple template: a line or a paragraph that should hook
the reader, sometimes an additional image to entice even more, and a hyperlink to the “source” or
“detailed” story.

“As a rule of thumb, we strongly recommend you not to click any links the Olympics related spam e-mails
provide. These hyperlinks usually trigger the download and installation of some other malware that can
The content of this document is confidential and classified as BitDefender's Proprietary Information.
BitDefender

severely compromise your system integrity. If you want to find out the last minute winners and results from the Olympic Games, you should definitely surf the safe and reliable news agencies’ Web sites or news portals, while completely ignoring e-mail spam and its menaces.” said Vlad Vâlceanu, Head of BitDefender Antispam Research.

In the following example, the link to the purported “source” of Swedish athlete nude photos does not lead to the Free Celebrity Movie Archive depicted in the arousing flashy banner, but to a compromised Web site that attempts to install a combination of malicious payloads.

First, while preparing the download of an alleged movie – which is, in effect, the disguised executable file
n a m e . a v i. e x e – theT r o ja n .F a k e A le r t .A A H sneaks into the system two more files, corrupting the current
wallpaper and displaying a window that informs the user about a viral detection, as depicted in the image
below:
The content of this document is confidential and classified as BitDefender's Proprietary Information.
BitDefender

To eliminate the (fake) threats, the user is advised to install the “Best Antivirus for Windows XP or Vista”, as another recent spam campaign suggested. This rogue software claims to scan and detect malware or other problems on the computer, while in effect attempts to dupe the users into purchasing a program that does not keep the threats away, but opens the door for other malware.

“The rogue this e-mail spam wave introduces via malicious or compromised Web sites has been already
used in other previous spamming campaigns, relying on different ‘hooks’, like Angelina Jolie’s nude
movies, Barack Obama’s presidential campaigno r U.S. troops’ attacks in Iran. The Olympic related spam

wave will probably decrease in intensity and cease after the games end, but it is most likely for the Trojan
to stay and continue spreading. Ideally, you should install and activate a reliable antimalware, firewall
and spam filter solution to keep these e-threats away from your system.”, added Vlad Vâlceanu.

Scams and Frauds Pole Volt

Beijing games will probably remain in the E-Threats History as one of the most influential event in terms of frauds. Due to its intriguing location, majestic venues, and magnificent spectacle it promised, the 29th Olympiad was heavily exploited by cybercriminals long before the opening ceremony.

IT Security Specialists and media warned the public about the imminent dangers of e-scams. With the
flight operators filling their seats to China almost a year ago, Beijing hotels fully booked since January and
Olympic events’ admission tickets sold out one month ahead of the August opening fireworks, it is no
wonder that e-crooks took advantage of the sport fans’ keen wish to cheer their favorite athletes.

The content of this document is confidential and classified as BitDefender's Proprietary Information.

Share & Embed

More from this user

Add a Comment

Characters: ...