Archive for the ‘Social Networking’ Category

Anatomy of Twitter social engineering

September 27th, 2009

I can immediately tell when someone who is following me on Twitter is not genuine (especially if it’s a hot girl half naked).

The social engineering on Twitter is getting much better these days. It used to be a profile with just one tweet: a spam URL. Now, the profile actually looks legit with regular updates that give you the feeling this is a real person there.

Such as “Lucia756 is making pancakes!! :) ”

twat

You could not be any more wrong. These profiles are automated, they are fake, and their sole purpose is to make you click on a link that redirects to either exploits, phishing pages, or Adware.

thwats

In this case, it is Adware with the webfetti toolbar, AKA FunWebProducts, MyWebSearch, CursorMania, SmileyCentral, Zwinky, MyWay Searchbar, etc…  is that a long list or what?

webfetti

I think I’m going to keep my Twitter profile public… Such things are very annoying… but they allow me to blog about malware practices that will affect many users out there.

Jerome Segura

  • Posted in Social Networking
  • |
  • (0) comments
  • |
  • Add your comments

More XXXblackbook spam on Twitter

August 30th, 2009

There has been a wave of automated followers on Twitter promoting the adult dating site xxxblackbook.

Social engineering tricks are used, such as your regular newspapers’ headlines.

tw

The link redirects you to an adult site, as mentioned above. Not sure this will help you if you are unemployed….

tw2

I’m seriously considering locking up my Twitter account now…

Jerome Segura

  • Posted in Social Networking
  • |
  • (0) comments
  • |
  • Add your comments

Twitter raids

August 26th, 2009

You know sometimes I forget how much hatred there is in our world.

There are people out there that plan attacks against individuals, companies, or popular websites as part of their daily activities.

They get together and plan ‘raids’ on IRC channels. In the pic below, if you click on the ‘visit this page’ you get redirected to a horrible rickrolling page. Why are there such sick people out there?

tweet

This site aims at attacking Twitter. It teaches you how to create Bots and other things to become a hacker.

(Warning! offensive language)

tweet3

This screen below shows a Bot written in Perl which purpose is to retweet every tweet mentioning a certain keyword.

tweet2

What can I say? I’ve noticed Twitter has been very slow at times lately and I’m sure it gets abused a lot on a daily basis.

I think such reminders are good every once in a while to keep your guards up.

Jerome Segura

  • Posted in Social Networking
  • |
  • (0) comments
  • |
  • Add your comments

A rather raunchy linkedin profile

August 25th, 2009

The popular social networking site linkedin is constantly the victim of fake profile pages.

Check this one out though, and tell me there truly is nothing you can do to weed out a ‘fake’ profile.

Warning! Offensive language.

linkedin

And the free sex clips redirect to this page which serves both Windows and Mac Trojans.

sitestube.com/xplaymovie.php?id=45145

linkedin2

File detection on Virus Total:

vt

Jerome Segura

Malware ID: 621696054e4d31d03ce13467ba22b53d.zip

  • Posted in Social Networking
  • |
  • (0) comments
  • |
  • Add your comments




Location

You are currently browsing the archives for the Social Networking category.




RSS feed to this site Twitter Linkedin YouTube Channel

 

RSS feed to this site Jerome Segura is a Security Analyst working at ParetoLogic.

You can contact him at:
MalwareDiaries Email

 

Pages

  • Live Malware Map
  • VB2009 pictures
  • Zheng™ Technology
  • About
  • Contact Us



Security Software

  • XoftSpySE Anti-Spyware
  • Anti-Virus PLUS
  • Privacy Controls



Malware Top 10

  • Koobface Worm
  • DNS Changer Trojan
  • Fake Alert Trojan
  • Windows System Suite
  • Smart Protector
  • Home Antivirus 2010
  • PC Antispyware 2010
  • System Security
  • AVCare
  • Perfect Defender 2009



Archives

  • November 2009
  • October 2009
  • September 2009
  • August 2009
  • July 2009
  • June 2009
  • May 2009
  • April 2009
  • March 2009
  • February 2009
  • January 2009
  • December 2008
  • November 2008
  • October 2008
  • September 2008
  • August 2008
  • July 2008
  • June 2008
  • May 2008
  • April 2008
  • March 2008



Categories

  • Adware (1)
  • Banker Trojans (3)
  • Botnets (2)
  • Conferences (4)
  • DDos (1)
  • Exploits (33)
  • Fake codecs (30)
  • IM threats (1)
  • Interviews (5)
  • Keyloggers (1)
  • Mac security (15)
  • Malware Trends (67)
  • Phishing (7)
  • Podcast (1)
  • ransomware (1)
  • Research (33)
  • Rogue software (47)
  • Rootkits (2)
  • scams (3)
  • Social Networking (4)
  • Uncategorized (109)
  • Wireless Security (1)
  • world map (1)



 
 
 

© 2009 ParetoLogic Inc.