Websense Security Labs ThreatSeeker Network has discovered that the KoobFace malware campaign is now using a Christmas theme. This is not the first time the Koobface worm has infected social newtork sites.
The Koobface website offors a video posted by ‘SantA’ with the usual ruse of requiring a codec to watch the video is used to encourage the user to install and run a setup file. This file is currently detected by 16 out of 41 products, according to Virus Total.
The user on the compromised facebook page is presented with alink to a compromised site in switzerland. The user is redirected to one of the several Koobface websites through a malicious flash video file hosted on the compromised site.
If the user runs the infected file, the worm will automatically login to their Facebook, MySpace, and several other social networking sites and send messages to all their friends.
So be wary of this new worm with a Christmas theme, least it doesn’t make you and your pc merry this Christmas.