Adobe, Kaspersky warn of botnet worm spreading via social networks

By Ed Oswald | Published August 6, 2008, 1:02 PM

The maker of Flash and the leading security lab said earlier this week that a worm first discovered last Thursday is being spread through social networks disguised as a update to Flash Player.

Adobe says there is no update. The worms, dubbed Koobface.a and Koobface.b by security firm Kaspersky, spread themselves through leaving comments and messages on Facebook and MySpace, which are sent to friends of an infected user.

In order to trick the recipients into clicking on the links, the comments use names of celebrities or references to fake stories or videos. Some examples of comments' titles include "Paris Hilton Tosses Dwarf On The Street," and, "Examiners Caught Downloading Grades From The Internet."

Once a link is clicked, the user is redirected to a site that includes a video clip. The user cannot watch the video unless the update is applied. Once compelled to do so, the user then downloads and executes codesetup.exe which then installs the worm on the user's machine.

"Unfortunately, users are very trusting of messages left by 'friends' on social networking sites. So the likelihood of a user clicking on a link like this is very high," senior virus analyst Alex Gostev said.

An infected computer would then become part of a botnet, which could be used later to launch additional attacks. It may also upload modules with additional functionality to the Internet.

Kaspersky said the worm only seems to be spreading through MySpace and Facebook, and not any of the other social networks at this time. Koobface.a is aimed at the former, while Koobface.b targets the latter.

It should be noted that Kaspersky has since detected four more variants of the worm, however it has not as yet provided any details on the specifics of the newer detections and what or whom they target. BetaNews had contacted the firm for additional information, and has been told to expect a response later this afternoon.

Comments

View comments by with a score of at least

So all the teens on MySpace are getting net herpes.
Somehow I find a little ironic humor in that.

Score: 0

|

If people are dumb enough to use utterly pointless sites like these "social networking" thingamabobs, then they deserve to get stuff like this.

Score: 0

|

Yeah, people are dumb enough. Witness 2004 elections in the U.S.

Score: 0

|

And the other guy would have been any better... LOL All politicians pretty well suck anymore.

Score: 0

|

It's nice to change the monkey some times.
People let power get to their heads otherwise.

Score: 0

|

If you think the U.S. would be where it is now with Gore in power, or even Kerry, you are sorely mistaken.

I'd say there is little difference, but there still is a difference.

Score: 0

|

Yes, I guess with Al Gore we would have signed up for that phoney Global Warming scam a lot earlier. Kerry...are you for real?

Score: 0

|

Palm posts third quarter results: disappointing sales, more net loss

Palm may be doing better this year than it did last year, but with only 42% sellthrough for the quarter, there's plenty of room for improvement.

Kindle for Mac released: Is Amazon's e-reader moving away from hardware?

Today, Amazon announced Kindle for Mac, the latest addition to the family of free Kindle software.

Microsoft cuts and pastes an egg

Carmi Levy | Wide Angle Zoom: We've listened to our mobile customers, said Microsoft, and cut-and-paste isn't what they want? Uh-huh. Right.

Google improves Maps for Android, rolls in bonus features

The search provider has improved page listings in Maps 4.1, adding a Latitude widget and live wallpaper.

Will Viacom's public airing of YouTube's dirty laundry change the Web forever?

If Viacom wins its summary judgment, will video services everywhere have to police their content for anything that may belong to a copyright holder?

Let the rejections begin: Apple opens first round of submissions for iPad App Store

In a message sent to developers today, Apple announced that it is now accepting iPad apps for the iTunes app store.

Viacom and YouTube: Timeline of pertinent events

The billion-dollar legal battle between Viacom and YouTube is in its third year, but the video site's run-ins with Viacom stretch back more than five years.

A tale of two "red alerts:" Which Windows warnings should you heed?

A pair of malware warnings are circulating worldwide, but after reading so many, they all seem alike. Sophos tells us to read them all more carefully.

Nvidia admits GeForce drivers responsible for fan problems, issues updates

It's the type of driver error you see less and less frequently, but after a few video cards were smoked, Nvidia has issued what it hopes will be a fix.

Netflix axes 'friends' feature due to unpopularity

After mysteriously disappearing from the Movie Detail page on Netflix, the Friends feature is in the process of being removed.

Preliminary results: IE9 tech preview performs 7.8 times better than IE8

There are indeed significant improvements made to the efficiency and processing power of Microsoft's next browser, though they're not across the board.