Koobface computer virus gang unmasked

Jan 17, 2012
Online security researchers claimed to have identified the members of a Russian gang of cyber criminals behind the Koobface computer virus which has attacked Facebook and other sites. Facebook said that its security team had helped knock out a computer server which controlled a Koobface "botnet" of malware-infected personal computers.

Online security researchers claimed Tuesday to have identified the members of a Russian gang of cyber criminals behind the Koobface computer virus which has attacked Facebook and other sites.

Facebook said meanwhile that its security team had helped knock out a which controlled a Koobface "" of malware-infected personal computers.

According to Jan Droemer, an independent computer security researcher, and Dirk Kollberg of security firm SophosLabs, the five members of the Koobface gang live in St. Petersburg, Russia.

In a blog post, Sophos said evidence and the identities of the five Koobface suspects has been handed over to law enforcement.

The Koobface virus first emerged in 2008, spreading in the form of messages with subject lines such as "You look just awesome in this new movie."

Users who clicked on the message were informed their Flash player was out of date and were prompted to download , exposing their computer to Koobface malware.

Koobface tricked some owners of infected personal computers into buying anti-virus software and enlisted their machines into a botnet made up of hundreds of thousands of infected computers.

"Koobface was able to perform these actions by communicating with a central 'Command & Control' server, which directed the compromised computers to do the gang's bidding," Facebook said.

"This remained the case until last March, when Facebook Security was able to perform a technical takedown of this 'Command & Control' Mothership," it said.

"Since then we have had no new sightings of Koobface for over nine months and our teams are working hard to keep it that way," Facebook said.

"While we have been able to keep Koobface off Facebook, we won't declare victory against the virus until its authors are brought to justice," it said.

"To this end, we will be sharing our intelligence with the rest of the online security community in the coming weeks in an effort to rid the Web of this virus forever," Facebook said.

Explore further: Study shows role of media in sharing life events

add to favorites email to friend print save as pdf

Related Stories

Facebook teams with McAfee to tighten security

Jan 13, 2010

Facebook has announced an alliance with Internet security specialty firm McAfee to get user of the world's leading online social network to better protect their computers.

Spam down but 'zombie' armies growing: McAfee

May 07, 2009

Hackers appear to be beefing up armies of "zombie" computers to recover from a major hit scored in the battle against spam email, according to software security firm McAfee.

Cyber-crooks targeting social-networking websites

Mar 03, 2009

Computer security specialists warn that Facebook users have been hit with a series of data-stealing attacks in the past week as cyber crooks increasingly stalk social-networking websites.

Recommended for you

Study shows role of media in sharing life events

9 minutes ago

To share is human. And the means to share personal news—good and bad—have exploded over the last decade, particularly social media and texting. But until now, all research about what is known as "social sharing," or the ...

UK: Former reporter sentenced for phone hacking

7 hours ago

(AP)—A former British tabloid reporter was given a 10-month suspended prison sentence Thursday for his role in the long-running phone hacking scandal that shook Rupert Murdoch's media empire.

Evaluating system security by analyzing spam volume

7 hours ago

The Center for Research on Electronic Commerce (CREC) at The University of Texas at Austin is working to protect consumer data by using a company's spam volume to evaluate its security vulnerability through the SpamRankings.net ...

Surveillance a part of everyday life

8 hours ago

Details of casual conversations and a comprehensive store of 'deleted' information were just some of what Victoria University of Wellington students found during a project to uncover what records companies ...

European Central Bank hit by data theft

8 hours ago

(AP)—The European Central Bank said Thursday that email addresses and other contact information have been stolen from a database that serves its public website, though it stressed that no internal systems or market-sensitive ...

Twitter admits to diversity problem in workforce

11 hours ago

(AP)—Twitter acknowledged Wednesday that it has been hiring too many white and Asian men to fill high-paying technology jobs, just like several other major companies in Silicon Valley.

User comments : 0