Spam from your Facebook account? Malware attack poses as official warning

Published by pratyushkp on April 27th, 2011 - in Social, Technology

Cybercriminals are adopting a new disguise, following last week’s “Facebook password changed” malware attack.

Computer users are discovering malicious code has been sent to their email inboxes, pretending to be a notification from Facebook that their social networking account has been used to send out spam.

Spam is sent from your FaceBook account

A typical message reads:

Dear client

Spam is sent from your FaceBook account.

Your password has been changed for safety.

Information regarding your account and a new password is attached to the letter.
Read this information thoroughly and change the password to complicated one.

Please do not reply to this email, it's automatic mail notification!

Thank you.
FaceBook Service.

The attack would, perhaps, be a little more successful at fooling more people if it had gone through a grammar check and if the perpetrators had paid more attention to the fact that it’s spelt “Facebook” not “FaceBook”.

Nevertheless, there are doubtless some computer users who might be tempted to open the attached ZIP file and infect their computers with malware.

We’ve seen similar attacks before, of course – and I imagine that cybercriminals will continue to use ruses like this when spreading their malware. Plenty of people are hooked on Facebook, and a message telling them that their password has been reset is likely to send them into palpitations and they may open the unsolicited attachment without thinking.

After all, it’s not as though spam being sent from Facebook accounts is unusual.

If only more people realised that they cannot trust the “from:” address in an email, as it is so easily forged. In this case it presents itself as being from "Facebook Help" , but in reality it could just as easily be a Hungarian hacker, a Finnish fraudster or a Serbian scammer who initiated the widespread spam attack.

Sophos products intercept the attack as Mal/BredoZp-B.

If you are one of those many people who can’t get enough of Facebook in their lives, can stay informed about the latest scams by joining the Sophos Facebook page, where more than 70,000 people regularly share information on threats and discuss the latest security news.

Source :- http://nakedsecurity.sophos.com/2011/04/19/spam-from-your-facebook-account/

  • Spam from your Facebook account? Malware attack poses as official warning (nakedsecurity.sophos.com)
  • Facebook password changed? Malware attack poses as message from Facebook support (nakedsecurity.sophos.com)
  • DSC0173519.zip – spammed out malware attack poses as photo attachment (nakedsecurity.sophos.com)
  • My naked picture is attached – malware spammed out (nakedsecurity.sophos.com)
  • Beware of Facebook Email Malware Scams! (lockergnome.com)
  • ALERT: New Facebook Email Malware Spreading (allfacebook.com)
  • Malware Watch: ‘Spam is sent from your FaceBook account’; Spamvertised malicious photos (zdnet.com)
  • FedEx notification malware attack spammed out (nakedsecurity.sophos.com)
  • Spammers target Facebook (knoxnews.com)
  • Spammers target Facebook (physorg.com)




4 Responses

  1. FBI says you’ve been visiting illegal websites? It’s a malware attack « Social Media Blog says:

    [...] Spam from your Facebook account? Malware attack poses as official warning (pratyushkp.wordpress.com) [...]

    Reply
  2. Writers Wanted says:

    We really need freelance writers badly. After checking out this site, We must have you on our staff. We offer $35-$50 per hour. Our top people are pulling in over $90 THOUSAND per year, writing part-time.
    Please swing by and see us. http://write.ncsall.org

    Reply
  3. Visit the New Facebook? Hacker warning spreads like wildfire on social network « Social Media Blog says:

    [...] Spam from your Facebook account? Malware attack poses as official warning (pratyushkp.wordpress.com) [...]

    Reply

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes:

© Social Media Blog

Ad Plugin made by Free Wordpress Themes