Fake Facebook Email Contains Bredolab Trojan

Beware any emails from The Facebook Team and email address service@facebook.com, as security firm MX Labs reported that a new variant of the Bredolab Trojan horse is attached to a fake “Facebook Password Reset Confirmation” e-mail, and the Facebook information is spoofed, according to CNET.

The email contains an attachment, Facebook_Password_4cf91.zip, which includes the file Facebook_Password_4cf91.exe (according to MX Labs, the element between the underscore and .zip is made up of randomly chosen letters and numbers for each recipient), and when users download the file, Trojan horse Bredolab executes Internet files such as bogus anti-spyware software, CNET reported.

M86 Security added that Bredolab also downloads a bot called Pushdo, which immediately starts “spamming out more of these Facebook password reset e-mails,” according to CNET.

A Facebook spokesman told CNET:

This virus is being distributed through email, not on Facebook.

AW+

WORK SMARTER - LEARN, GROW AND BE INSPIRED.

Subscribe today!

To Read the Full Story Become an Adweek+ Subscriber

View Subscription Options

Already a member? Sign in