I wanted to pass along a warning to the neighborhood, knowing that there are a lot of Facebook users.
Yesterday, I received an E-Mail message purporting to be from “Facebook Security [profile@facebook.com]” that is actually a social attack attempting to deliver the W32/Bredolab trojan downloader.
Here is what the E-mail looks like:
—–Original Message—–
From: Facebook Security [mailto:profile@facebook.com]
Sent: Tuesday, March 16, 2010 6:27 PM
To: xxxxxxxxxx
Subject: Facebook Password Reset Confirmation! Important MessageDear user of facebook,
Because of the measures taken to provide safety to our clients, your password has been changed.
You can find your new password in attached document.
Thanks,
Your Facebook.
There was an attachment which purported to be named: Facebook_password_845.zip, which contained an executable file that delivered the malicious payload.








