Euro Websites Broadcast Trojan in Banner Ads

CYBERSPACE — A string of European websites transmitted malicious code to visitors over the course of approximately six hours this weekend after banner ads and advertising servers became infected with Bofra/IFrame code exploits, according to SANS Institute’s Internet Storm Center.

The problem was eventually traced back to the third-party advertising server Falk AG, which transmits advertising to websites that include The Register, NBC Universal, The Golf Channel and A&E Networks.

Also affected was NU.nl, the Netherlands’ largest news website with over 450,000 visitors each month.

According to Falk, the problem started around 6:10 p.m. GMT, when the company experienced an attack on one of its load balancers. Designed to evenly distribute requests to multiple servers, the balancer began to distribute about every 30th request to search.comedycentral.com, a compromised website that contained the Bofra/IFrame exploit.

“The purpose of the exploit was to establish a redirect to malicious code through a javascript component of Falk’s ad delivery,” Falk told its customers. The total amount of redirects were only 2 percent of EU ad requests, the company said.

LURHQ Threat Intelligence Group reported that at least two different Trojans were being installed by during the six hours that the compromised advertisements were being served. Infamous adware Trojan Virtumonde and backdoor downloader Trojan.Agent.EC were both fingered in the attacks.

Both programs use the IFrame exploit, discovered in late October and applicable to all Windows platforms except Windows XP Service Pack 2.

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Michigan Legislators Propose Online Porn Ban

Michigan lawmakers have introduced a bill that would make it illegal to distribute pornography via the internet in the state.

Florida AG Sues Aylo, Segpay Over State AV Law

Florida Attorney General James Uthmeier filed lawsuits against Aylo and Segpay today with the 12th Judicial Circuit Court of Florida for noncompliance with HB3, the state's age verification law.

Colombian Court Sides with Esperanza Goméz in Meta Account Deactivation Battle

On Friday, Colombia’s Constitutional Court ruled in favor of adult performer Esperanza Gómez in her legal battle against Meta over repeated suspensions of her Instagram account.

Missouri AG Announces Age Verification Rule to Take Effect Nov. 30

Newly appointed Missouri Attorney General Catherine Hanaway announced Friday that the state's recently approved age verification regulation for adult websites will go into effect on Nov. 30.

Aylo, Woodhull Freedom Foundation to Host 'Online Censorship' Event

Aylo and Woodhull Freedom Foundation will co-host a virtual panel addressing online censorship on Sept. 30.

Severe Sex Films Relaunches Site Through YourPaysitePartner

Severe Sex Films has relaunched its official website through YourPaysitePartner (YPP).

Judge Awards Plaintiffs Over $400K in Attorneys Fees in Derek Hay Civil Case

California Superior Court Judge Gail Killefer has awarded former clients of LA Direct Models over $400,000 in attorneys fees and court costs, to be paid by agency founder Derek Hay.

ChickPass Rebrands as 'ChickPass Cinematic Universe'

ChickPass has announced that it has rebranded its network of sites as ChickPass Cinematic Universe.

Brazilian Adult Industry Association ABIPEA Launches

Brazilian Association of the Adult Entertainment Industry and Professionals (ABIPEA) has officially launched its organization.

New Adult Social Media Platform 'Havven' Opens Beta Phase

Havven, a new adult social media platform, has opened its beta phase and will officially launch Oct. 5.

Show More