In a way it is very simple. Someone visits the site: areps.at,
It looks quite like a facebook login page. They give their username and password then their facebook account is hacked into and all their friends are sent a message asking them to 'Check areps.at', some of them do and so the virus spreads.

If it happens to you, then you should immediately change your password.
Following on from 'areps', it seems there have been a number of other similar facebook scams, such as a message that asked people to visit: bestfunger D0T com (90409)
ReplyDelete