Symantec discovered a phishing web-site, which provides the application in order to activate a bogus service which allows to see who visited the user’s Facebook profile and asks the user to log into the social network.
Those, who choose the first option, install an application on their computers together with Trojan that steals sensitive data from the victim’s computer, including personal and financial information. The second option is also no good – the user send his credentials directly to phishers.
All the data is sent to an e-mail address, which is inactive for three month already. Though, the experts does not exclude that all the stolen data can be sent to a server controlled by the attackers.