Content

HTool-FakeYT

Type
Program
SubType
Tool
Discovery Date
09/15/2008
Minimum DAT
5385 (09/16/2008)
Updated DAT
5385 (09/16/2008)
Minimum Engine
5.2.00
Description Added
09/15/2008
Description Modified
09/15/2008 5:13 AM (PT)

Tab Navigation

Characteristics

This detection is for a toolkit which is capable of creating fake youtube webpages. This could assist the malware authors to social engineer users into executing malware.

Once a user visits the webpage, a fake error message could be displayed saying a video cannot be played as a required codec is missing. The user is then redirected to the malicious website from where the malware is installed.



Removal

A combination of the latest DATs and the Engine will be able to detect and remove this threat. AVERT recommends users not to trust seemingly familiar or safe file icons, particularly when received via P2P clients, IRC, email or other media where users can share files.

Additional Windows ME/XP removal considerations

Aliases

Aliases

    N/A