A new worm has popped up on Facebook, using apparently stolen user credentials to log in to victims accounts and then send out malicious links to their friends. The worm also downloads and installs a variety of malware on users machines, including a variant of the Zeus bot. Researchers at CSIS in Denmark analyzed the worm s behavior and found that it appears to be using stolen Facebook credentials. It then sends out messages to victims with a link that’s supposedly to a photo file.
Source: https://threatpost.com/facebook-worm-spreading-installing-zeus-bot-112911/75935/