Hi (Rand) malware messages on Facebook today
Mon, 2009-06-29 17:55

Good thing the social engineering here sucks.

Facebook users are getting private messages from firends this morning containing the words Hi (Rand) and a link to a Web page.

Not surprisingly, this is a scam. In fact the link takes you to a Web site that attacks your computer.

Roger Thompson, Chief Research Officer with AVG Technologies say's the attack appears to be based on the Luckysploit toolkit, which throws a big whack of different attacks -- IE, Adobe, etc -- at your browser. If you're not fully patched, then it installs a rootkit on your PC.

I've seen a message that includes a link to the bulitre. com (don't go to these domains, they will attack you) and in Twitter messages Facebook users also mention the domain junfunrun . com. (which shares the same IP address)

Judging from the Twitter chatter, this looks low-volume right now, but it still sucks.

Reader Feedback
Tue, 2009-06-30 11:33
Hi (Rand)
By Anonymous

Do I have to worry if I use a Mac and was foolish enough to press on the link

Mon, 2009-06-29 23:11
any word on whether this
By Anonymous

any word on whether this affects windows and os x or just windows?

Mon, 2009-06-29 21:55
hi(rand)
By Anonymous

i accidentally opened that message :S whatta heck ill do now???

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
* Denotes a required field
VIRTUAL CONFERENCE
Security Directions: A Virtual Conference

Security Directions Available On Demand Sept. 30 - Dec. 30

Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.

» Register Now

WEBCAST
Protecting PII: How to Work with IT to Manage Risk

Compuware Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.

» View this Webcast