The ‘MovieReaper’ malware has infected hundreds of users, according to antivirus provider Kaspersky, which traced the attack to iTorrents.org, a site that appears to be compromised.
The ‘MovieReaper’ malware has infected hundreds of users, according to antivirus provider Kaspersky, which traced the attack to iTorrents.org, a site that appears to be compromised.
if the site is compromised, the hackers wouldn’t need to use .exe
just visiting the site would be enough to get infected, potentially
or even clicking on an itorrents link from 1337x, cuz the latter doesn’t host their own torrent files
That kind of browser exploit isn’t cheap and this is not the way that it is likely to get used.
fair enough.
although the apparent goal of a hack can also be an obfuscation of the true goal which may be more worthy of expense.
whatever though. i accept the community feels I’m overreacting.
fwiw I’ve always avoided .exe in torrents. maybe why i thought that was a basic b level safety warning.
Avoiding executables from untrusted sources is pretty reasonable.
Well if visiting a (compromised) site can get you infected the problem is not the site, but your browser, right?
Sure except they did use a .exe. The article states the expected .torrent was being replaced with a .torrent that downloads an 865 MB .exe file.