More Facebook, MySpace & Friendster malware

On August 20th, 2008 I wrote a post to warn about New MySpace&Facebook Malware.

Now there seems to be a similiar new case in Facebook. It seems like te send a fake message from one of your friends showing your firends name and picture and a link to a video. Opening link seems like YouTube but has a message in middle of screen telling that you need to install new version or Adobe Flash Player.

Cliking on install will however not update Flash but instead instead a new version of Koobface worm. This worm is also spread on MySpace and, unlike the last one I posted about, on Friendster.

Koobface will let black hats to run commands on infected computers. Naturally this will only be a problem for Windows users as the worm cant infect other OS’s but according to stast of my blog quite a few visitors I get are using a Windows system so I decided it to be best to warn people again.

edit: To clear things, this worm is not limited to Facebook, MySpace & Friendster only but will actually scan for browser cookies to steal login credentials for various other social networking sites and spread by sending the message to your contacts. According to TrendMicro at least following sites are in danger:

  • facebook.com
  • hi5.com
  • friendster.com
  • myyearbook.com
  • myspace.com
  • bebo.com
  • tagged.com
  • netlog.com
  • fubar.com
  • livejournal.com
This one is one neat piece of bad-ass malware to look out for.

There is more information about this on security site TrendMicro and on F-Secure Malware Information Pages.

admin

Author is a 29 years old linux zealot and hacker from Finland.

Tags: , , ,

Leave a Reply

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>