Warning: Facebook ‘Virus’

Hey all - just wanted to let everyone know about what essentially amounts to a virus being spread via Facebook.
If you get a message on your wall reading:

“hi XXX, howdy?? lisen i got a new friend here..shex kinda new here..maybe you can give her a lil tym so she can enjoy here?? not forcin u but u can chk out =)

her profile is
http://www.facebook.com.profile.id.17lgot00.jn95fk.e77c98037.com/facebook/index.php?id=s6jpp299o&auth=0008339&cyua=xc89ck0u4p

When you click on the URL it brings you to what appears to be the Facebook login screen, but is in fact an external Web site (http://e77c98037.com). An unobservant viewer will likely just assume they need to re-login to Facebook to figure out who this person is.

Once you do, not only do you submit your Facebook login username and password to a hostile site, you propagate the virus - allowing it to then send the same message to your Facebook friends’ Walls.

Because this is how the virus is spread, you will receive the Wall message from one of your friends and might inherently trust it based on this fact alone.

Please spread the word about this, and perhaps we can stem this malicious attempt to gain access to our Facebook accounts before it spreads too far.

Filed under: Internet | Tags: , , | Written on June 17, 2008

3 Comments »

[...] 2: It looks like this might be the first Facebook-based virus/worm since the facebook.com phish back in June.   addthis_url = [...]

August 7, 2008 @ 6:41 pm

Comment by
Sam L

Is there anyway to remove it once you have it?

August 8, 2008 @ 12:50 am

Comment by
Brian

How hard can it be to look at the address for the website you are logging into? To stop the virus spreading, we need to somehow conquer the problem of deficient IQs in humanity…a long shot!

August 17, 2008 @ 5:46 pm

RSS feed for comments on this post. TrackBack URL

Leave a comment

PIGEONholed

RECENTLYspoken

  • Brian Said: How hard can it be to look at the address for the website you are logging into? To stop the virus...
  • Ryan Said: @Rob: Solid tip Rob - cheers for sharing. Didn’t even occur to me to use MySQL’s built in MD5...
  • Rob Mitchell Said: This is pretty easy using PHPMyAdmin if you have it. If you don’t, get it - it’s free,...
  • Sam L Said: Is there anyway to remove it once you have it?
  • Ryan Said: @Steven: Best thing for you to do is familiarize yourself with some basic SEO principles. Also look into a...

BLOGroll

PASTposts

BADGEpatch

Blog Directory - Blogged Internet Blogs - BlogCatalog Blog Directory
Copyright © 2008 Dao By Design, All Rights Reserved.