Shifty sorts have created a new worm which spread rapidly on Facebook on Friday.
The malware, for now at least, does nothing more malicious than posting a message on an infected user's Facebook wall that point to a site called fbhole.com. Nonetheless, the speed of its spread on the social networking site has net security experts worried.
The message that the worm posts takes the form
:
try not to laugh xD http://www.fbhole. com/omg/allow.php?s=a&r=[random number]
Net security firm F-Secure reports that following the link takes a surfer to a fake error message. Clicking anywhere on this page fires up a script that posts the same message on a user's Facebook wall, continuing the spread of the malware.
As a search via youropenbook.org
illustrates, the worm spread like wildfire on Friday afternoon.
The fbhole.com domain associated with the attack was only registered on Thursday. It points to an IP address in Czech Republic, shared by another Czech site called ironbrain.net.