Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Recent Posts

  • Calendar

    May 2012
    S M T W T F S
    « Apr    
     12345
    6789101112
    13141516171819
    20212223242526
    2728293031  
  • About Us
    Malware Blog > Facebook Mystery Friend? No, Malware.

    Sep25
    11:32 pm (UTC-7)   |    by

    Cyber criminals continue to use the popular social networking site Facebook to bait users.

    A new threat follows the phishing operation that we blogged about just two weeks ago.

    This current Facebook threat begins with the following spammed email message:

    This bogus message tells recipients that a friend has added them to their social networking circle. Besides using a legitimate email address, the perpetrators also copied the format of the legitimate Facebook page.

    All of the links found in the message body lead potential victims directly to the legitimate Facebook site, with the exception of the login button, which draws a blank page because of an intentionally incorrect URL format.

    Potential victims who think the attachment reveals “their mysterious friend” may actuially be tricked into opening it.

    The attached .ZIP file supposedly contains a photo, but when unzipped it contains an executable named picture instead.

    The .EXE file is a worm that Trend Micro detects as WORM_AUTORUN.EAT.

    Interestingly, two notable worms (WORM_KOOBFACE.E and WORM_KOOBFACE.D) used Facebook a month ago in their propagation routines. The popularity of social networking sites are clearly targeted for cyber criminals who are intent on infecting more users.

    The Trend Micro Smart Protection Network already blocks the spammed email message before it reaches our users’ inboxes. It also detects WORM_AUTORUN.EAT at the desktop level and provides solutions for the removal of the worm. Web users are advised to refrain from downloading attachments in unexpected email messages, as these attachments may prove harmful to their systems.





    Share this article
    Get the latest on malware protection from TrendLabs
    Email this story to a friend   Technorati   NewsVine   MySpace   Google   Live   del.icio.us   StumbleUpon




    Comments are closed.



     

    © Copyright 2011 Trend Micro Inc. All rights reserved. Legal Notice