iEntry 10th Anniversary RSS Newsletter Advertising
Join the WebProWorld Forum!
Text: Decrease Font Size Increase Font Size | Print Print Article | Share: Delicious Digg StumbleUpon Post to Twitter Post to Facebook
8 commentsFriday, December 5, 2008

Worm Rains on Facebook's Parade

Watch Out for the "Koobface"

Just as Facebook unleashes its Facebook Connect program that ties the site in with any other site who wants to be involved, some virus has to come along and rain on the parade. The Koobface virus, which has in actuality been around for the majority of the year, is not directly related to Facebook Connect, but casts a shadow of vulnerability on Facebook in general.

What to Look For

Like most viruses, this one relies on deceit, and tries to get users to download it using a non-existent video as bait. David Sarno at the LA Times explains:

The virus' most insidious property is that users receive the offending message from a friend: On Facebook, only people whom users have explicitly approved as friends can send them e-mails.

The Koobface e-mails have a subject like "You look so amazing funny on our new video," and contain a link to a YouTube-like video site that appears to contain a movie clip (see image).  The video, however, doesn't play, and the website then asks the user to update his or her video software by downloading a file. It's that file that contains the malicious code.


McAfee provides more information about Koobface and shows a screenshot of a possible page that users could land on to get to it:

McAfee Koobface Screenshot

What it Does

"As part of their malicious payload, the worms transform victim machines into zombie computers to form botnets," said security firm Kaspersky Lab when it reported on two variants of Koobface back in July. One variant targeted Facebook, while the other targeted MySpace.

Facebook's security page says, "We're currently helping our users with the recently discovered "Koobface" worm and phishing sites. If your account has recently been used to send spam, please visit one of the online antivirus scanners from the Helpful Links list, and reset your password here." The links list is as follows:

Facebook Security Helpful Links

The worm must be affecting a lot of people now to make its way though the news so much all of a sudden. It's been around for months, yet we haven't heard much about it until now. Facebook users who have accounts that have been in jeopardy have been receiving emails about how to proceed.

About the author:
Chris Crum has been a part of the WebProNews team and the iEntry Network of B2B Publications since 2003. Twitter: @CCrum237

Shocking news

Wow.This news sure make my confidence in Facebook low indeed.I better hope they find a solution to it or I don't want risking my personal data being hacked..I guess this will be dangerous news to the Facebook Community..

Not usually thankful for dial-up...

Thanks, Chris, for this information. I'm on FaceBook as well as other social sites to socially market my safety and security web site and I'm usually hating my dial-up connection because it keeps me from viewing video clips. However, apparently it's kept me from getting this virus. Yea!

Publish A Comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
2 + 2 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.
SEARCH
Popular WPN Business Resources












Subscribe to WebProNews


Send me relevant info