Youtube got phished
By Jerome Saiz, Wed, November 14th, 2007
Last edited 2008/01/12
A phishing email is making rounds trying to entice users to install a fake Flash plugin. And it's of course a real malware.
Beware of the touching lovers story ! At least, beware of this touching lovers story.
According to Websense, a phish email is being spammed trying to coral users to a fake Youtube website. What's new here is the quality of both the phishing email and the fake website. Both are very convincing and could even fool regular Youtube users.
Once on the fake Youtube website, victims are told they need to download Flash player in order to watch the movie. Again, the message is very similar to the one used by the legitimate Youtube website when Javascript is turned off.
Here, though, trying to download that Flash player will lead to the installation of a keylogger (install_flash_player.exe).
The screenshots below will show how real-looking are those fake email and website :
![]()
The initial email message (source : Websense)
![]()
Zoom on the link to download the fake codec (source : Websense)
Into IAM ?
The IAM 2008 Series
SecurityNewsletter interviews major Identity & Access Management players to give you the lead on what IAM will be in 2008.

Print this news
