Massive bot attack spoofs Facebook password messages
'Bredolab' Trojan rides fake reset messages, reaches at least 735,000 users
By Gregg Keizer
October 28, 2009 03:56 PM ET
Computerworld - A massive bot-based attack has been hitting Facebook users, with nearly three-quarters of a million users receiving fake password reset messages, according to security researchers.
The attack, which began Monday afternoon, according to e-mail security vendor Cloudmark, targets Facebook users with a spoofed message that claims recipients' Facebook passwords have been reset as a security measure. The messages, which come bearing subject lines such as "Facebook Password Reset Confirmation," include a file attachment that supposedly contains the new password.
In fact, the attached .zip file includes a Trojan downloader, dubbed "Bredlab" by some antivirus companies, "Bredolab" by others. The downloader grabs a variety of malware from hacker servers, including fake security software, or "scareware," and installs attack code and rogue antivirus applications on the compromised PCs.
Multiple security companies, including Symantec, Trend Micro, MX Lab and Websense, have put out warnings about the attack campaign. "This variant of Bredolab connects to a Russian domain and the infected machine is most likely becoming part of a Bredolab botnet," said Shunichi Imano, a security researcher at Symantec, in a post to the firm's security blog.
More at: Massive bot attack spoofs Facebook password messages
My Computers
System One System Two
-
- Computer type
- PC/Desktop
- Computer Manufacturer/Model Number
- Custom builds = 2
- OS
- W7 Ultimate x64/W10 Pro x64/W11 Pro Triple Boot - Main PC W7 Remote PC Micro ATX W7 Pro x64/W11 Pro
- CPU
- AMD Phenom II X4 975 Deneb 3.6ghz - 965 2nd remote pc
- Motherboard
- Gigabyte GA-790XTA-UD4-Gigabyte GA-880GM-D2H remote pc
- Memory
- Kingston Hyper X DDR3 1600 1.5v 16gb - Hyper X Fury 8gb 2nd
- Graphics Card(s)
- MSI HD Radeon 5750 1gb - MSI HD Radeon 6450 on mini tower
- Sound Card
- Creative Labs X-Fi Xtreme Audio P - Realtek onooard 2nd case
- Monitor(s) Displays
- ASUS VW199T-P 19" HP 2082a Main-HP 2082a 20" remote pc
- Screen Resolution
- Asus 1440x900 - HP 1600x900
- Hard Drives
- WD Black 1TB HD per OS W7, W10, and pending W11 presently on 500gb OS Drive - Pending Triple 1TB HDs for Spanned Storage/backup volume
Single 2TB external USB enclosure, single 1TB System 7 Host/Boot drive, Pending 8TB external HD for system image b
- PSU
- Corsair 750TX - primary / Corsair CX600 - second
- Case
- Antec 900-2 - SSD compatible / NZXT Vulcan mini tower
- Cooling
- Zalman CNPS9900A
- Keyboard
- AZIO L70 Backlit Letters Gaming - ONN Cordless/USB
- Mouse
- MSI DS200 Programmable, Logitech Cordless
- Internet Speed
- 30mbps upgrade - primary hard wired - mini tower usb WiFi
- Antivirus
- GFI VIPRE Internet Security 2014 on W7 2016 beta on W10,
- Browser
- Cyberfox, WaterFox 64bit FF variants, FireFox x64, Pale Moon
- Other Info
- Accomdata fan cooled usb 2.0 PIDE/Sata II, III external enclosure.
Sambient usb/eSata PATA/Sata II, III external enclosure.
-
- Computer type
- PC/Desktop
- System Manufacturer/Model Number
- CUSTOM ASSEMBLY
- OS
- W7 Pro x64/W11 Pro
- CPU
- AMD Deneb 3.6ghz - 965
- Motherboard
- Gigabyte GA-880GM-D2H remote pc
- Memory
- Kingston Hyper X Fury 8gb
- Graphics Card(s)
- MSI HD Radeon 6450 DVI Output
- Sound Card
- Realtek onooard Creative or Other separate PENDING
- Monitor(s) Displays
- VIZIO 32" LCD TV Separate LCD Pending
- Screen Resolution
- 1600x1080
- Hard Drives
- WD 500GB OS Host/Boot WD Green 1TB Storage/Backup
- PSU
- Corsair 600W - THERMALTAKE 600W spare case
- Case
- NZXT Vulcan mini tower
- Cooling
- Twin 120mm Top Fans - 240mm Side Cover
- Keyboard
- ONN Cordless/USB Logitech Cordless
- Mouse
- ONN USB/Cordless - Logitech Cordless
- Internet Speed
- DSL 5G
- Browser
- MS Edge, FireFox, WaterFox x64, FireFox Nightly
- Other Info
- OS Testing-Remote Access to Main TeamViewer
