We have seen and mentioned at one point that the strategies used during the processes of malicious code spread more and more involved BackHat SEO techniques to achieve different vectors for access to download the file you are looking to spread malicious.
Combined with Social Engineering and domain names with high demand keywords through search engines that refer to websites with a large and massive flow of use as Rapidshare, Megaupload and other related music, games, movies, etc., make as a whole, a very effective method of propagation.
Currently it's carrying out a major propaganda campaign through websites that simulate the whole structure of blogging and use words much sought after and combined together to form the domain name to download malware using flashy BlackHat SEO techniques to achieve good search engine positioning. Among the words used are: rapidshare, megaupload, free, games, soft, warez, ftp, music, full house, pub, movies, cat, catalog, download.
Among the domains created from the combination of these words are:
freesoftcat .com (184.108.40.206)
free-full .com (220.127.116.11)
free-full-rapidshare .com (18.104.22.168)
cpmusicpub .com (22.214.171.124)
free-games-rapidshare .com (126.96.36.199)
The search engine words or subjects that are part of the pages have a very powerful position, appearing, as in the example in the top positions.
From the different places a battery is discharged malware important not only in quantity but in variety. Some of the malicious files are:
SoftwareAngular.Momentum.-.Chromium.45094.exe - 2/41 (4.88%)
Keygen.OJOsoft.Total.Video.Converter.v2.6.1.0106.-.For.MKV!.exe - 24/40 (60.00%)
Setup.exe - 26/40 (65.00%)
BackHat SEO techniques present a new approach to spreading malware that malware writers don't let the side, marking a trend and effective campaign and aggressive infection difficult to control through conventional mechanisms.
Related information this Blog
Estrategia BackHat SEO propuesta por Waledac