Watch out for these Facebook spam and scam apps

facebook profile stats_SCAMGiven Facebook’s user numbers, the fact is that hackers and malicious activity can infiltrate the site. As a follow up to our report on malicious Facebook hacks you need to look out for, Bitdefender helped pull together some different types of Facebook app scams that you need to avoid.

Warning: We’ve redacted the hyperlinks to the apps, but included the link in text form. Visit the sites at your own risk.

Change Your Facebook Color

change your facebook color

This Facebook app first appeared on the radars of security researchers everywhere when Sophos warned users that the app was a scam. This app claims that it can change your Facebook color but like many suspicious apps before it, it requires users to fill out their personal information and complete surveys, which earn the creators money through affiliates.

Bitdefender scrutinized the app and discovered that it’s more malicious than first thought. Bitdefender Chief Security Researcher Catalin Cosoi says that the app steals its user’s authentication cookies and even instantly creates dozens of blog sites using that person’s Google account information. These blogs are then republished automatically to the victim’s Timeline with certain friends tagged (and this helps to avoiding Facebook’s blacklist since each blog link is a unique URL) to perpetuate the apps’ presence and lure in more victims.

The creators of the app however are getting more sophisticated. The app is appearing in different languages, with Spanish and French speakers as its first international targets.

For your information, this is what you’ll see on the Spanish version:

Cambia de color facebook, tunealo para que sea unico con esta magnifica aplicación, serás la envidia de todos tus amigos http://colorearfb.com/)

In French:

Super, facebook a changé ! Je l’ai il est vraiment trop cool, si tu le veux Il est désormais possible de Changer la couleur de ton Facebook ici: http://2doc.net/4avip

Who Saw Your Profile

My total profile views today_SCAM

It’s only natural to be curious about who’s looking at your Facebook profile. And sometimes our curiosity piques enough to search for applications that help to surface this information. Unfortunately, there aren’t any legitimate applications. Really: If you ever see something advertising this ability, it is a scam. Like the Change Your Color app, the motivation for illicit users to create these apps is for the affiliate dollars and your personal information.

There are variants to this popular Facebook app scam, which Bitdefender provided us examples of below:

Who saw your profile

Example: WoW!! I Cannot believe that you can now see who has been stalking your profile for real! You can easily check who is spying on you at http://apps.facebook.com/fggtrtbr/

Timeline viewers

Example: Awesome! The Patent has been Approved! Beta is out for this application!!I can see who viewed my TimeLine this past few days.

This app would then republish the following excerpt and link to your Timeline to lure your Facebook friends:

Now I know who are my real Timeline Viewers! :P Thanks for developing this application! Check yours here! https://apps.facebook.com/timeline-voyage/

Profile view

Example: My total profile views today: Male Viewers: 43 Female Viewers: 29 See your total views and who is viewing you here: http://apps.facebook.com/gdrydrete/

Facebook Credits Scam

free facebook credits scam

Facebook Credits are the in-app virtual currency that gets you the coveted Zynga dollars in Farmville. Based on this, many Facebook credit scams will ask you sign up for the app to receive free Facebook Credits as compensation. Some scams won’t even run through a Facebook app in the first place. Of course it’s impossible to receive Facebook credits without paying for it so upon signing up, many versions of this scam will direct you to a malicious or fraudulent link.

Some of these apps will say the following:

Get your FREE 5000 FACEBOOK CREDITS! NO SCAM NO surveys NO waste of time no task its totally FREE! this promo is available for the first 1000 persons only… CHECK IT OUT ENJOY…i got mine and it works get yours here http://creditsoffers.blogspot.com.

Be cautious about what you click on

What users need to be mindful of is that by signing up for these malicious apps that appear in the Facebook App Center, they’re susceptible not only to sharing your personal Facebook data, but also their computers can be infected with devastating viruses and malware.

For example, Cosoi tells me that in July 2012 a link to a bogus video being shared on Facebook, when clicked would infect its users with a Trojan.Dropper.TQX virus. The virus stole information including Remote Access Service accounts, HTML content, running processes, passwords, and personal credentials. To manufacture a network effect, the link when clicked on by a victim would automatically be published to their own Timeline. Similar videos that Bitdefender has identified include:

  • Crazy brother rapes and kills his little sister – Shocking!
  • Woman kills own baby so she can play FarmVille
  • Stupid woman left Facebook video chat on and boyfriend saw her cheating with other guy!

While antivirus and malware detecting tools like the ones endorsed by Facebook or even Bitdefender’s own Safego will work as intended, the user really is the first and last line of defense. Contrary to the assumption that users won’t be duped by these scams, studies are proving that users are vulnerable, in part because we’ve become almost too trusting of social networks.

One of these studies headed by Bitdefender found that an alarming 94 percent of respondents provided their home address, phone number, while four of five respondents disclosed information about their family, parent’s names, and types of passwords that they used. It should go without saying, but be careful what you share and especially what you click. 

Social Media

Facebook, Instagram, and WhatsApp went down worldwide for 2 hours this morning

Chaos erupted on the internet this morning, as Facebook, Instagram, and Whatsapp all went down from 6:30 a.m. to approximately 9 a.m. Thousands of users were unable to access the sites or send or receive Whatsapp messages.
Computing

Boost your PCs power by learning how to overclock your CPU

Is your PC just chugging along, a little slower than you'd like? Sometimes you just need a little more power under the hood. Before you pick up some new hardware, learn how to overclock your CPU.
Photography

These are the best action cameras money can buy, from GoPro to Garmin and more

Action cameras are great tools for capturing videos of your everyday activities, whether it's a birthday party or the steepest slope you've ever descended on your snowboard. These are the best money can buy.
Mobile

These parental control apps will help keep your kids' device habits in check

Looking for extra security and monitoring on mobile devices? Take a look at the best parental control apps for limiting time and keeping watch on your child's phone usage and behavior. We have the top options for Android and iOS here.
Trash

The best MP3 players of 2018 cram tons of music into a small package

Want to go for a run, but your phone is weighing you down? Don't sweat it. Can't fit your whole music library on your smartphone? No worries. Check out our list of the best MP3 players, and find one that works for you.
Social Media

How to download Instagram Stories on iOS, Android, and desktop

Curious about how to save someone's Instagram Story to your phone? Lucky for you, it can be done -- but it does take a few extra steps. Here's what you need to know to save Instagram Stories on both iOS and Android.
Mobile

Skype screen sharing for mobile will let you share your swipes on dating apps

Skype is prepping the launch of screen sharing for mobile so you can share your swipes on dating apps, shop with buddies, or, perhaps, show a PowerPoint presentation to coworkers. It's in beta just now, but anyone can try it.
Social Media

Facebook toys with mixing Stories and News Feed into one swipeable carousel

Facebook's News Feed could look a lot like Stories if a prototype the social media giant is working on rolls out to users. The design change mixes Stories and News Feed posts into a full-screen slideshow that users swipe left to navigate.
Social Media

No more moon showers as Facebook Messenger’s dark mode gets official rollout

Facebook Messenger launched a dark mode last month, but to activate it you had to message the crescent moon to someone. Now it's been rolled out officially, and it can be accessed in a far more sensible way — via settings.
News

Twitter has revealed a launch date for its handy hide replies features

Twitter has revealed a launch date for a feature that lets users hide replies to their tweets. The hope is that it will help the original poster filter out offensive or irrelevant content from conversation threads.
Smart Home

Oh, Zuck, no! Facebook rumored to be creating a voice assistant to rival Alexa

Facebook hasn't been a big player in the smart speaker market, but that may be changing: The social media giant is reportedly working on a digital assistant to compete against Alexa and others.
Social Media

Facebook says it unintentionally uploaded email contacts of 1.5 million users

Facebook says that over the last two years it unintentionally uploaded the email contacts of 1.5 million users as they signed up to the social networking service. The process has ended and the email addresses are being deleted.
Digital Trends Live

Digital Trends Live: Facebook data security, Ubisoft helps Notre Dame, and more

Join DT Live as we discuss Facebook security issues, Ubisoft's plan to help rebuild Notre Dame, and more. We are also joined by Emily Teteut of Snap the Gap, Jennifer Sendrow of New York Public Radio, and DJ and producer Zeke Thomas.
Photography

After controversial video, China bans ‘Leica’ on social media

A video that referenced Tiananmen Square got the name of the camera company Leica banned from the social media platform Weibo. Leica says the video wasn't an officially sanctioned promotion.