Categorized | Quick Heal

Twitter worm Profile Spy spreading fast.

It appears that a new Twitter scam is making its way in lots of innocent users twitter account. We call this a Profile Spy worm app. Its basically a rogue Twitter application known as Profile Spy which tricks Twitter users into believing that it can tell them who has been viewing their online profile.

If you happen to see below tweets put by someone you follow that means that the person you follow is infected by this worm. Profile Spy adds below tweets to infected users account:

Wow! See who viewed your twitter with Profile Spy.

The above tweet is followed by a link. Twitter users those who click on the link are asked to allow the application to access their profile and also update it. This is a good trick as it does not asks user for any password and simply asks for the permission to access the Twitter account just like other Twitter official applications. The user is shown below message in the browser.

Once the user gives Profile Spy full access to their Twitter account it then takes control of the account and posts the above tweet to the account. After that the application shows lots of popup and other scam page links some of them ask to fill out survey forms that tell you will win a price at the end. This goes on. All the advertisements and popup that are displayed by the worm are part of scam where the hacker (creator of the Profile Spy application) is going to gain out of it.

We recommend all Twitter users not to click on the link offered by Profile Spy. Those who are already affected by the scam can easily recover from it by following below steps:

1. Go to your “Profile”.
2. Select “Edit your profile”.
3. Then selet connections Tab.
4. List of applications accessing your profile will be shown.
5. click “Revock Access” for Profile Spy.

Also do not forget to remove the two posts that the applications add in to your tweets. This will make sure nobody else among your followers will falls victim to this worm by clicking on the link in the post.

Related Posts
  • Blog: New Twitter worm redirects to Fake AV
    A new Twitter worm is spreading fast, using the “goo.gl” URL shortening service to distribute malicious links Full story: Securelist / All Updates...
  • Facebook photo album chat messages spreading worm
    A new variant of the Koobface worm was making the rounds today on Facebook. This is particularly bad news. Most of the Facebook scams we report on do not infect your computer with malware; they simpl...
  • Orkut Worm spreading through XSS loophole
    Orkut, a popular social networking site, was hit by a new worm on Saturday, September 25, 2010. The worm uses a XSS exploit on the Orkut website that allows malware writers to inject malicious javasc...
  • Koobface worm targets Mac users on Facebook, Twitter
    A new variant of the Koobface worm that targets Mac OS X and Linux as well as Windows is spreading through Facebook, MySpace and Twitter, security researchers warned today. View full post on Networ...
  • Twitter Hit with Second Worm in a Week, Spread Via ‘WTF’ Link
    Days after a site update unleashed a Twitter cross-scripting attack, the micro-blogging site was again hit with a bug that spread via malicious links. View full post on PCMag.com Security C...
  • Twitter contains second worm in a week
    Twitter has put a stop to a worm that posted obscene messages to victims' Twitter feeds. It's the second worm attack the site has suffered in a week. View full post on Network World on Security...
  • Twitter Worm Spews Offensive Language
    Twitter has fixed a worm which hit the service over the weekend. For a time, victims received 2 tweets, the first of which made an offensive sexual reference and the second of which said "WTF...
  • Congratulations, we killed the Twitter worm!
    You may not realize it, but you and I are antibodies. Or maybe we're white blood cells. Leukocytes? Killer T cells? I know we're definitely not germs. View full post on Network World on Security...
  • Twitter XSS Worm Holds Lessons for IT
    The online world was all aflutter yesterday with news of a worm spreading through Twitter. The "onMouseOver" issue--which presented pop-up boxes and redirected users to porn sites--was quickly handled...
  • 17-Year-Old Australian Takes Blame for Twitter Worm
    A 17-year-old Australian student said Wednesday that he is the one who exposed the flaw that led to Tuesday's cross-scripting attack on Twitter. View full post on PCMag.com Security Coverag...

Comments are closed.

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
5 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
5 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
5 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
5 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
5 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
5 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
5 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
5 months ago
Some free-based music we play at work http://t.co/xu5agZfc
5 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
5 months ago