My friend was a worm

Social networks have been an increasing way to distribute malware in 2008. And, according to our predictions, this will go on in 2009.

In recent days we have seen a case with a new sample, W32/Boface.J.worm, very similar to what we discovered a few months ago.
 
A colleague from work phoned us saying that he had received a very suspicious email from a friend in facebook.

Email

When he contacted his friend to know if it has been him, he followed the link included in the e-mail and he discovered that it was the typical bait:The link makes you think you're going to watch a video, but before asked you to install a video codec. This complement is,
in fact, a copy of the worm. 

FakeYoutube 

At the same time, the friend of our colleague said that he did not send anything and moreover Facebook had blocked his account. He told us that he received this mail: 

Facebook 

Facebook has been fast this time and has blocked his account and gives somes tips to him.
 
Thanks to Alberto for this information.

 

Site feed