Wednesday, November 30, 2011

WARNING: Zeus Banking Trojan Targets Facebook Users

[Zeus][1] has risen again, and we don't mean the Greek god: Zscaler ThreatLabZ reports that a new Facebook worm is rapidly spreading the Zeus Banking Trojan.

According to [Zscaler ThreatLabZ][2], the Zeus Banking Trojan logs on to the social network via compromised accounts and stolen credentials, proceeding to post photos which prompt users to download them. Users then receive a screen saver, complete with the Zeus Banking Trojan and other malicious files.

Zscaler ThreatLabZ Senior Security Researcher Mike Geide added:

Zeus is a Trojan designed to steal banking credentials. The newer variants of Zeus include P2P functionality making the botnet much more resistant to take-down.

Facebook continues to be a popular medium for malware attacks, given the easy propagation mechanism built into social networking. By definition, social networking is social. Facebook is built to easily allow people to share pictures, videos, and other content, and people trust what they are receiving from their friends. Malware, such as this recent example, can take advantage of the sharing mechanisms and users' trust of their friends within social networking.

Readers: Have you been victimized by the Zeus Banking Trojan or other malware?

[![][3]][4]

_Graphic courtesy of [abuse.ch][5]._

[![][6]][7]
[![][8]][9]

[![][10]][11] [![][12]][13] [![][14]][15]

![][16]

[1]: http://www.allfacebook.com/facebook-botnet-army-2010-02 (Report: Facebook Served As Primary Distribution Channel For Botnet Army)
[2]: http://www.allfacebook.com/facebook-porn-attack-2011-11 (Facebook Porn Was 'Self-Inflicted JavaScript Injection')
[3]: http://www.allfacebook.com/wordpress/wp-content/uploads/2011/11/ZeusP2P.jpg (ZeusP2P)
[4]: http://www.allfacebook.com/wordpress/wp-content/uploads/2011/11/ZeusP2P.jpg
[5]: http://www.abuse.ch/?p=3499 (ZeuS Gets More Sophisticated Using P2P Techniques)
[6]: http://feedads.g.doubleclick.net/~a/BrckONtVrEqkt0WIX4dtZIR4CB0/0/di
[7]: http://feedads.g.doubleclick.net/~a/BrckONtVrEqkt0WIX4dtZIR4CB0/0/da
[8]: http://feedads.g.doubleclick.net/~a/BrckONtVrEqkt0WIX4dtZIR4CB0/1/di
[9]: http://feedads.g.doubleclick.net/~a/BrckONtVrEqkt0WIX4dtZIR4CB0/1/da
[10]: http://feeds.feedburner.com/~ff/allfacebook?d=pnQdOprp5To
[11]: http://feeds.feedburner.com/~ff/allfacebook?a=dlK0W5WC0dE:CWsDWBxpfzw:pnQdOprp5To
[12]: http://feeds.feedburner.com/~ff/allfacebook?d=qj6IDK7rITs
[13]: http://feeds.feedburner.com/~ff/allfacebook?a=dlK0W5WC0dE:CWsDWBxpfzw:qj6IDK7rITs
[14]: http://feeds.feedburner.com/~ff/allfacebook?i=dlK0W5WC0dE:CWsDWBxpfzw:gIN9vFwOqvQ
[15]: http://feeds.feedburner.com/~ff/allfacebook?a=dlK0W5WC0dE:CWsDWBxpfzw:gIN9vFwOqvQ
[16]: http://feeds.feedburner.com/~r/allfacebook/~4/dlK0W5WC0dE

URL: http://feedproxy.google.com/~r/allfacebook/~3/dlK0W5WC0dE/facebook-warning-2011-11

No comments:

Post a Comment