Monday, February 17, 2014

WARNING: There Is STILL No Way To See Who Viewed Your Facebook Profile

According to Symantec, a fake application promised users that they could view a list of other Facebook users who visited their profiles after installing the app, prompting them to either proceed with the install and inflict their devices with malware, or to enter their Facebook login credentials, after which they were directed to legitimate pages, but their information was compromised.



Symantec analyzed the malware and found its behavior to be as follows:
  • The malware consists of two executable files that both perform the same action.
  • The files are added to the registry run key, which executes after every reboot.
  • The malware sets up a key logger in order to track anything that the victim types.
  • Then, it will check if there is Internet connectivity by pinging www.google.com. If there is connectivity, the malware will send all information gathered to the attacker’s email address.
  • Symantec observed that the email address has not been valid for three months and, hence, the malware is not able to send updates to the attacker at the moment.
  • If users fell victim to the phishing site by entering their login credentials, the phishers would have successfully stolen their information for identity theft purposes.
Check this article for more information about this malware and how to protect yourself.

Source. Via AllFacebook