Authors of unwanted programs have started to apply the technique, which allows for the potential victims geographical location, the fraudulent evasion of social engineering to make it stronger.

To distribute a new worm variant are sent an e-mail alerts with news about “dirty bomb” explosion and an invitation to visit the Reuters news agencys website (obviously fake). Adulterated site uses the GEO-IP, the search program to determine a visitors geographical location and change the text of the message, now saying that an explosion occurred near the site visitors life.
The visitor offered to watch video about radioactive bomb blast near the spot where he is currently located. If the user clicks the video file first, followed by a requirement to download the latest “Flash Player” version. But the software, which receives a visitor, no relation to the company Adobe, but it also contains harmful programs.
The resources used:
antivirus.lv




