Help How was it done

Discussion in 'Ethical hacking' started by grizz12, May 24, 2012.

  1. grizz12

    grizz12 New Member

    Joined:
    May 24, 2012
    Messages:
    3
    Likes Received:
    0
    Trophy Points:
    0
    I am wondering if someone might. be able to give me some advice. Not sure if I am posting in the right forum so if not I appologise in advance..

    I had one of my facebook contacts appear on my list under another name. They changed their name and profile picture so therefore they didnt have to get authorisation. They removed all the posts they had previously put up on my wall and just left one significant one. I clicked the profile picture since they had changed their name and the next day I found a trojan on my computer. It somehow got through Avira at the time. I had done a clean scan the day before I clicked the photo.

    My question is this. Would it be possible to bind a trojan into a picture with a program and upload it to facebook? If it can be done is it an easy thing to do and would a person who is apparently capable of hacking facebook accounts be able to do something like this? Also if this method could be used would it leave a trace on the computer it was done on?

    Thanks in advance for any help you can give.
     
  2. Alex.Gabriel

    Alex.Gabriel New Member

    Joined:
    Oct 23, 2011
    Messages:
    86
    Likes Received:
    7
    Trophy Points:
    0
    Occupation:
    Linux system administrator
    Location:
    Italy
    Home Page:
    http://blog.evilcoder.net
    Profile picture on facebook can't be virused . Facebook has methods and methods to avoid this. Anyway , executable files can be binded to image files . Are you sure that you have clicked only on that profile picture that day ?
     
  3. Syperus

    Syperus New Member

    Joined:
    Sep 2, 2011
    Messages:
    45
    Likes Received:
    9
    Trophy Points:
    0
    Location:
    127.0.0.1
    Yes it is possible to bind a trojan or any virus to a picture. The problem with that though is it will show up with an .exe file format so I wouldn't worry about being trojaned through a facebook profile pic. The other option would be to hide the virus in an image using stenography, but again the virus would not be ran if you opened the picture. This is just a method of hiding files from plain sight.
     
  4. grizz12

    grizz12 New Member

    Joined:
    May 24, 2012
    Messages:
    3
    Likes Received:
    0
    Trophy Points:
    0
    I didnt click anything else. Like I said I noted the wording left on my wall and it had a different name and pic alongside the original wording so I clicked it. When I first did this it took me to the profile page, It didnt actually let me into the account. When I went back to it about an hour later the wording was gone from my wall, the original picture changed and it went from being a female to male.

    Also another friend of mine who happens to be on her list had the same thing happen. She had a different profile name and picture and so she clicked it and she got a message about a trojan that it would seem was blocked.

    I appreciate your help
     
  5. Alex.Gabriel

    Alex.Gabriel New Member

    Joined:
    Oct 23, 2011
    Messages:
    86
    Likes Received:
    7
    Trophy Points:
    0
    Occupation:
    Linux system administrator
    Location:
    Italy
    Home Page:
    http://blog.evilcoder.net
    Are you sure you didn't accesed any facebook clone or anything else ? It is hard to believe that facebook is such an unsecure network.
     
  6. Syperus

    Syperus New Member

    Joined:
    Sep 2, 2011
    Messages:
    45
    Likes Received:
    9
    Trophy Points:
    0
    Location:
    127.0.0.1
    The only way I can think of to get a virus from within facebook is by allowing allowing an app with malicious coding access. From there the app can direct a download/install to your computer.
     
  7. grizz12

    grizz12 New Member

    Joined:
    May 24, 2012
    Messages:
    3
    Likes Received:
    0
    Trophy Points:
    0
    I didnt actually click on anything other than the pic alongside the words which were on my wall.

    If it was a cloned page could that explain why when I clicked the pic instead of it taking me inside her wall which would normally happen, it took me just to the profile page. I couldnt get inside the profile.

    I also noticed today that the windows explorer file was modified at the same time I clicked this pic. Explorer had been running slow and three virus scans picked up nothing so I had a further look around.

    Thanks for any help.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice