11/04/2009
Twitter Worm Runs Riot

Earlier today news broke of a worm running riots on twitter. The virus is spread through a url linking to stalkdaily.com.(WARNING:DO NOT VISIT) While it is unclear at this moment how the virus works, it appears that the worm takes control of your twitter account, changes password and adds the stalkdaily.com link in your bio. Your profile then tweets constantly, linking to the stalkdaily.com site thus spreading the problem further and further.(However, the tweets do not appear on your profile for some reason)
The Twitter community has come together and everyone is notifying their followers of the virus. A quick twitter search for stalkdaily would reveal how communal twitter is at a time like this.
Official @spam moderator has warned people not to click on the link nor link to the site.
Somehow the stalkdaily link works without the http:// prefix. For this reason tweeters are asked not to include “www.stalkdaily.com in their alerting tweets.

How to Remove The Virus.
1) Clear Cache and cookies from your Browser
2) Log out of any twitter related apps, clients or sites.
3) Change your Password
4) Check all fields in your profile settings for hidden codes or links.
5) delete the stalkdaily.com link from your bio.
6) Remove your tweets and notify your followers of the virus.
Users are asked not to visit the site or link to it in anyway shape or form. If you have any questions regarding the virus please send me a message or @reply at @tweetingmad Please report any information of the virus to @spam
Update: According to StalkDaily and several other sources stalkdaily.com has nothing to do with the worm. It is believed that an infected profile contained code and when visited it would spread further. However, the message is unclear and nothing is confirmed about how this worm operated. Users are still advised to stay clear from stalkdaily.com.
For everyone wondering, I did NOT promote and/or was involved with the spamming ON Twitter. All bad things you are hearing about this site is not true. Please reconsider as I am not the person who did this…StalkDaily is a website that follows the same functions as Twitter, except more advanced How? Well, instead of just adding an “update status”, people can add pictures and videos. Then you can stalk them, so when they upload a video or picture, or comment someone, you’ll know!
From Stalkdaily.com
UPDATE 2
The situation is under control and twitter have realeased a status statement reasurring users that all their details are safe and the necessary stops to prevent the attack have been taken
Earlier today we were informed of a malicious site that was spreading links to StalkDaily.com on Twitter without user consent via a cross-site scripting vulnerability. We’ve taken steps to remove the offending updates, and to close the holes that allowed this “worm” to spread.
No passwords, phone numbers, or other sensitive information were compromised as part of this attack.
From Status.twitter.com
Update 3:
Stalkdaily.com’s operater, mickeyy Mooney(17) has confessed to being behind the rampant worm on twitter. In an article with bnonews.com, he revealed that the act was motviated by boredom and the desire for money. From the article;
“I am the person who coded the XSS which then acted as a worm when it auto updated a users profile and status, which then infected other users who viewed their profile. I did this out of boredom, to be honest. I usually like to find vulnerabilities within websites and try not to cause too much damage, but start a worm or something to give the developers an insight on the problem and while doing so, promoting myself or my website.”
From bnonews.com,To read the whole article Click Here
Text posted at 20:20





