Beijing Olympics
A series of attacks have tried to take advantage of the upcoming Olympic games

Malware writers cash in on Olympics

Rootkit-laden video is latest to exploit Tibet protests

Written by Shaun Nichols in California

A video file laced with a malicious rootkit is the latest attempt by hackers to cash in on the Beijing Olympics.

The video appears to be a simple protest cartoon packaged in an executable file. But the 'Race for Tibet' movie also contains a piece of key-logging malware that installs itself as a driver.

The cartoon shows a Chinese gymnast performing in an event along with images from the recent riots and government crackdowns in Tibet. The user is then urged to join a 'race for Tibet' protest.

McAfee researcher Patrick Comiotto warned that the movie initially infects the user with a malicious driver. The file is installed in the '%windir%/system32/' driver folder under the name 'dopydwi.sys'.

The file then proceeds to create a .dll file that logs keystrokes which are later uploaded to a server in China.

The cartoon is the latest in a series of attacks that have tried to take advantage of the recent events in Tibet and the upcoming Olympic games in Beijing.

Malware-laden fake petitions and press releases were sent out to pro-Tibet groups in early March following initial rioting in the region.

By last week, the Trojan involved in those attacks was linked to a larger series of SQL website attacks.

Piggybacking on current events has become a common social-engineering tactic for malware distributors.

Events ranging from the Virginia Tech shootings to the execution of Saddam Hussein have been exploited by hackers to infect unwitting users.

Further reading

Tibet attack Trojan identified

'Fribet' also connected to SQL attacks   More...

US surfers 'alarmingly' ignorant over botnet danger

NCSA warns over danger posed by cyber criminals' weapon of choice   More...

Underworld economy runs on bots and spam

Market for hijacked PCs fuels online crime   More...

Eight April patches from Microsoft

Five critical fixes in this month's update   More...

Related articles

Malware writers target pro-Tibet groups

Emails laced with malicious software   More...

Malware writers exploit Bhutto killing

Hackers use assassination to push Trojans   More...

Cyber-criminals unleash spam Storm

Experts warn of 'confirmation spam' outbreak   More...

China cracks down on web porn

44,000 sites closed and 868 people arrested ahead of Olympics   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

16 May 2008

2.97 MBXP on OLPC, broken dreams and Yahoo fights back More...

15 May 2008

3.28 MBDark fibre, mobile TV and solar power More...

14 May 2008

2.66 MBOnline inequality, mobile thumbprints and corporate raids More...

Poll

HOME WORKING

HOME WORKING

Do you let any or all of your employees work from home?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

OLPC

OLPC to ship with Windows XP

Microsoft teams up with One Laptop per Child project   More...

The Sims

The Sims goes flat-pack with Ikea

Virtual world gets Swedish wood   More...

Advertisement

Microsoft-Yahoo

Yahoo board fights back at Icahn

Investor accused of 'significant misunderstanding' in Microsoft saga   More...

MySpace

Woman charged over MySpace suicide

Lori Drew indicted on federal charges   More...

Advertisement