A new malware attack has been circulating Facebook lately which puts a link on the user’s newsfeed claiming to be the “sexiest video ever”. When clicked the program tries to access the user’s info and if they allow that it will prompt them to install a new version of a FLV video player and starts downloading an .exe.
The file it actually downloads is Hotbar Adware which puts a toolbar in the browser and displays ads based on browsing habits. The Facebook application will also post messages on friend’s walls with the same video link and “sexiest video ever” message.
If the user doesn’t allow the application to access their info they are safe. If a user has gotten the malware the Daily Mail reports that Graham Cluely from security software developer Sophos said: “If you were one of them [that got attacked], you should scan your computer with an up-to-date anti-virus, change your passwords, review your Facebook application settings, and learn not to be so quick as to fall for a simple social engineering trick like this in future.”

Articles
Blogs
Kits
Forums
It’s such a simple trick, but against the untrained masses it’s unimaginably effective. Bait someone with something they want quickly and badly, and it’s likely they’ll click on whatever common looking dialog pops up without giving it much thought. More business for us, I suppose.
kinda goes hand in hand the majority of people on facebook are idiots who have no clue what there doing half the time so it makes sense someone would exploit that
We had at least one of these show up in our office, its one of the slightly tougher ones out there, rkill couldn’t kill it outright which makes it a rarity, if you can get into safe mode/use an uninfected account it makes the job much easier. It’s definitely cleanable.
Thanks for the heads up on this. I will forward this around to my clients to make sure they don’t fall for the trick.
The other one doing the rounds is “this is hilarious! lol Distracting Beach Babes [HQ] Length: 5:32″.
Infections via facebook seem to have really taken off in the last 3 months.