The Super Bowl is the one of the biggest and most watched television events of the year in the United States. People everywhere scour the internet looking for predictions, gambling spreads and news before the event and scores, stories and clips after the event. In anticipation of the increased search traffic for Super Bowl related terms, cybercriminals have shown themselves to be well-organized and planning ahead. Search results for Super Bowl related search terms are already turning up top-ten results linked to malicious websites.
Super Bowl search terms have been detected as poisoned search terms by zveloLABS™ Among the search terms detected are:
- Super bowl 2010 score
- Super bowl 44 MVP
- Super bowl 2010 entertainment
- Super bowl champions 2010
For some of these searches, the top result is malicious. It seems that this round of poisoning is, so far, being done by the Rogue AV outfits as these links lead to sites with fake antivirus software and low detection rates from legitimate anti-virus software:
Poisoned search results are becoming commonplace. Most recently searching for information on the earthquake in Haiti returned large numbers of poisoned results. Getting bogus search results to the top of the rankings is commonly achieved by linking to the site from compromised sites or fake blogs and thereby boosting the apparent popularity of the bogus site. The bogus site is then used to compromise the machine of visiting users through social engineering tricks and browser or browser-plugin exploits. zvelo’s automated systems quickly identify these risky websites and block them for customers and partners.
zvelo recommends confining Super Bowl searches to news search engines such as Google News. These results tend to be safer since the sources have gone through an approval process.