-
Malware Hunter
Facebook Virus
I recently spotted this on Facebook. Somebody pmed me saying "I got u surprise via Facebook mobile. I decided to check it out. It redirected my to a webpage () which was blank except in the centre where it was written "Download photoalbum". I clicked on it and found that it was a download link to a file called photo.exe which is around 712.5 KB in size. Apparently undetectable by my NIS 2011 real-time, it got 14 detections when I uploaded it to VirusTotal on suspicion. When I tried running the file, SONAR picked it up and deleted it.
VirusTotal reports HERE.
P.S. The above links are for informational purposes only. @Mods: If there's any problem with me posting the links here, please feel free to remove them.
Last edited by leofelix; 01-07-2011 at 05:34 AM.
Reason: link removed for security reason
-
Experienced User
thasts a very common way to spread trojan through FB
Love me , Hate me but you just can't Ignore me 
-
14 of 43 (32.6%) told that it was a malware and Norton couldn't detect in real time. Wow!
"Insanity is doing the same thing over and over again and expecting different results." - Albert Einstein
-
*nix Technical Support
Read about this virus a while back, one of the new cross platform ones. Still requires root/sudo under Linux.
Please next time, hxxp and quote it if you're linking. Thanks.
pacman -Syyu life not found in sync db
-
Malware Hunter
@hellnoire: Can you tell me where you read about the virus? I wanna read it too. And do I have to do hxxp for malicious links only or for all links?
-
Rookie
The site now redirects to a new site when the user click download a file name surprise.exe
Virustotal link : http://www.virustotal.com/file-scan/...a21-1293510261
ESET, Kaspersky and Norton didn't detect. Submitted to avast virus lab.
Thoughts are like a never ending ocean where it is deep, endless and dangerous
-
Guest
Just ignore it and hit the delete message button - problem solved. Most of the time this type of social engineering attack is usually needs user-assistance, ( user-assisted attacks ). No need to argue whether you AV detected it or not. It's not a Facebook virus, it does uses Facebook as a medium to disseminate those trojan agents, using its internal features and capitalizing on human's trust. Be vigilant! tc...
"Stars and the Sun"
-
Whiz Kid
Let's report it on WOT guys!!
Screw Google! Ask me!
-
Malware Hunter
@ceyfer: Yes, one should hit the delete button. But I decided to download it. It helps when I'm testing anti-malware stuff..
-
Moderator
Links bringing to malware removed for security reasons.
Next time, go and report malware directly to antivirus vendors, please.
The security of our members is VERY IMPORTANT
no further links to malware will be tolerated
Thank you for understanding.
Thread closed
Last edited by leofelix; 01-07-2011 at 05:40 AM.
Roger and out
Similar Threads
-
By Christy in forum General Forum
Replies: 10
Last Post: 01-04-2012, 04:59 PM
-
By INDRANIL in forum Spyware/Viruses
Replies: 5
Last Post: 08-28-2011, 09:34 PM
-
By kimlanvn in forum Spyware/Viruses
Replies: 6
Last Post: 04-23-2011, 12:09 AM
-
By richie1913 in forum Spyware/Viruses
Replies: 9
Last Post: 03-27-2010, 10:15 PM
-
Replies: 16
Last Post: 12-12-2008, 06:55 PM
Tags for this Thread
All times are GMT +8. The time now is 09:06 AM.