Welcome to Spyware Removal News

Google Toolbar: Beware of Buttons


The Google toolbar has found yet another use: as a possible malware vector. Researcher Aviv Raff has released a proof-of-concept (PoC) code, which demonstrates how an attacker may install malicious software or conduct phishing attacks by prompting the user to install a new Google toolbar button.

The code makes use of a specially crafted link that refers to the button’s XML file, which when clicked displays a dialog box summarizing the details of the button to be installed. This dialog box also displays a URL of where the button is to be downloaded. Through manipulation, however, a malicious author could make it appear that the said URL is non-malicious by adding special redirector strings. This further increases the user’s trust in the button to be installed. If the toolbar does get installed, the user must manually click on the button to execute it, which in turn may run an installation script (which a user must approve to install) or a fake log-in console (for phishing purposes). Google Toolbar: Beware of Buttons | TrendLabs | Malware Blog - by Trend Micro





20% off PC Tools Spyware Doctor
20% off PC Tools Spyware Doctor Offer Expires 06/30/08

Coupon Code: pctools20
Please Visit our Home Page

Home

More Spyware Removal News