The Latest in IT Security

Facebook: 95% 0f All People Cant even Watch This Video F0r More Than 20 Seconds

08
Jan
2012

Variants of this malware have appeared on Facebook in the last few months. Today’s version of the attack starts with a friend’s post that looks something like this:

The link takes clickers to a Blogspot page which has been very convincingly designed to look like a Facebook page with an embedded video player. (none of the Facebook elements on the top of the page are actually clickable). Visitors are informed that they need the Divx plugin/Youtube Premium plugin.

Clicking on the download link runs a script that performs several misdeeds:

1) A link is posted on the user wall – Facebook extracts the content for the post from the page itself which includes data specifically formatted for this purpose:

  • <title>95% 0f All People Cant even Watch This Video F0r More Than 20 Seconds</title>
  • <meta property=”og:title” content=”95% 0f All People Cant even Watch This Video F0r More Than 20 Seconds” />
  • <meta property=”og:image” content=”http://i.imgur.com/0F–s.jpg” />
  • <meta property=”og:description” content=”i dare you to get past the 25 seconds.Just click play” />

2) The script then installs Firefox or Chrome extensions depending on the browser used. These extensions are used to redirect users to several further scams. The redirections happen no matter what sites the user actually intended to go to. One of the redirections is to a scam offering a $50 Starbucks gift card. This is similar to the attack we described in December. After coaxing the Facebook user to like and share the link they are led to an affiliate marketing site.

How to spot that this is bad stuff before you click too much:

  • The spelling and grammar errors – “Cant”, “wow checkout this”, “FOr”,
  • The blogspot page that is based on a number
  • The blogspot page that looks like a Facebook page
  • The “download plugin” requirement to see a video (a long-running trick to get people to willingly install malware).

Check out our infographic where we break down attacks such as these that occurred in 2011. Follow us on Facebook to keep updated about threats like these.

 

Leave a reply


Categories

SUNDAY, FEBRUARY 05, 2023
WHITE PAPERS

Mission-Critical Broadband – Why Governments Should Partner with Commercial Operators:
Many governments embrace mobile network operator (MNO) networks as ...

ARA at Scale: How to Choose a Solution That Grows With Your Needs:
Application release automation (ARA) tools enable best practices in...

The Multi-Model Database:
Part of the “new normal” where data and cloud applications are ...

Featured

Archives

Latest Comments