Snynet Solution Logo
MON - SUN: 10 AM - 6 PM
+60 11 5624 8319

Blog

This fake movie streaming service actually installs a backdoor

Image Description

Cybercriminals have created a fake streaming service with the end goal of tricking users into installing the BazaLoader trojan on their systems according to new research from Proofpoint.

The cybersecurity firm first observed the entertainment-themed campaign in May of this year as it masqueraded as a real streaming service online with a slick website featuring fake movies.

The campaign itself is used to spread BazaLoader which has the capability to download and install additional modules on victim's systems. Multiple threat actors are currently using the loader to distribute ransomware including Ryuk and Conti. 

According to Proofpoint's analysis, the firm can say with high confidence that there is a strong overlap between the distribution and post-exploitation activity of BazaLoader and the cybercriminals behind the Trickbot malware.

BravoMovies

The latest BazaLoader campaign begins with potential victims receiving an email telling them that their trial period is over and that they will be charged $39.99 per month unless they cancel their subscription to the fake streaming service BravoMovies.

These phishing emails contain a phone number that users can call if they wish to cancel their subscription. If a user calls this number, a customer service representative will then verbally guide them to BravoMovies' website. The cybercriminals behind this campaign have certainly done their homework as the site looks like a real streaming service complete with fake movies and posters, an FAQ, pricing details and even a free trial.

When a user visits the BravoMovies website, heads to the FAQ section and follows the directions to unsubscribe via the “Subscription” page, they will be asked to download an Excel spreadsheet. This document then asks them to “Enable Content” and malicious macros are used to download BazaLoader.

The reason this campaign has been successful so far is due to the fact that many viewers signed up for and then canceled multiple streaming services during the pandemic. Cybercriminals are well aware of these behaviors which is why they used them to their advantage when launching this new BazaLoader campaign.

To prevent falling victim to this and similar campaigns, users should only sign up for reputable streaming services after doing their research and remember that if something seems too good to be true, it probably is.

Date

27 May 2021

Sources


Share


Other Blog

  • DeskTime employee monitoring

    In our DeskTime evaluation, we investigate whether this simple time tracking tool can compete with more comprehensive employee monitoring software.

    Read More
  • Better broadband: CableLabs showcases 10G, the cable connection of the future

    There’s something in the air in Louisville, Colorado -- or more specifically, in the wires. Humming along miles of networking cabling, zipping through signal repeaters: It’s the future of the Internet.

    On Thursday morning at the home of CableLabs -- which bills itself as “the leading innovation and R&D lab for the cable industry” -- network engineers and representatives from some of the country’s top internet providers came together to showcase some of the fastest speeds they’ve ever transmitted: 8Gbps downloads and 5Gpbs uploads, using the world’s only DOCSIS 4.0 modem and a series of networking technologies that CableLabs calls 10G.

    “Besides the people in the labs, nobody has seen this,” said Curtis Knittle, CableLabs vice president of wired technology.

    In a closed showroom before a handful of people, engineers and tech experts showed off a demo seemingly worthy of a high-school AV club: gobs of networking cable linking a unique, handmade modem via a series of amplifiers and repeaters. It was a showcase for 10G, the next great leap for broadband internet access, and the blazing, 10-fold increase in speeds promised to homes across America.

    Crucially, 10G promises dramatically faster speeds across existing hardware. While you probably subscribe to a 300Mbps or 600Mbps service through your cable provider, your modem can do better - but only so far. Existing connections max out at a theoretical 1.5Gbps. 10G tech will amp it up, and engineers won’t need to dig up the street near you to boost your broadband. In theory, anyway, although the cable companies themselves will need to install an updated amplifier or two along the way to your house and you may need a new modem.

    "We’re super excited about what’s coming,” said Stephanie Michko-Beale, EVP and Chief Technology Officer for Charter Communications. “This suite of technologies is transformational.”

    Besides the people in the labs, nobody has seen this.

    Curtis Knittle, CableLabs

    “We’re certainly very enthusiastic about what we’ve seen,” said Len Barlik, EVP and Chief Technology Officer for Cox Communications. “From a customer experience perspective, we know there’s a lot of demand for this moving forward.”

    In a press release announcing the tests, Elad Nafshi, EVP & Chief Network Officer at Comcast Cable, echoed their comments and touted the advancements. “These 10G technologies represent the fastest, most efficient path to deliver multigigabit symmetrical speeds at scale everywhere, not just in select neighborhoods or towns.”

    “The pace of 10G innovation is only accelerating, and Internet users around the world will reap the benefits.”

    When asked, none of the company representatives were willing to state a timeline for release of new DOCSIS 4.0 modems or the 10G service, but that’s to be expected: The tech was being shown off for the first time. It's likely years down the road. So what is it exactly?

    Knittle from CableLabs called 10G a “holistic umbrella” -- more than just a new modem or better coax cable. There’s DOCSIS 4.0, a new standard for the cable modem. DOCSIS 3 and its 3.1 evolution have been growing and changing for over a decade; TechRadar wrote about its promise back in 2010. DOCSIS 4.0 or full-duplex DOCSIS was officially released in 2017, but good luck finding a modem or a carrier to support it yet.

    The 4.0 spec brings those blazing speeds, most notably the upload. You’ve probably noticed that your upload speeds are dramatically slower than your download speeds, and it’s not just your computer. 4.0 doesn’t quite bring parity, but it will significantly increase the theoretical maximums to 6Gbps, by sending uploads and downloads along the same spectrum within the fiber optic cables.

    10G technology also brings new technologies to boost reliability and security, CableLabs says, and decreases the latency in connections, which should facilitate gaming, interactive AR (that metaverse thing everyone’s talking about), and other internet activities that rely on precision.

    Read More
  • Intel in 2020: year in review

    With flagging CPU sales, 7nm delays, and Apple abandonment, Intel hasn’t had a great time of it this year.

    Read More
  • This broadband deal offers superfast speeds for £24/pm and comes with a £50 voucher

    Virgin's broadband deals are frequently leading the market and its latest offer is no exception.

    Read More

Find Out More About Us

Want to hire best people for your project? Look no further you came to the right place!

Contact Us