I was just trying to send a message to a friend on Myspace and noticed that the person’s entire profile area was trying to redirect me to login-sm.info via google. That page is down but it probably went to a “You must be logged in to do that” page that looked like it was Myspace - luring more people into the spiral.

Looking at the source of their page it looks like their “Who I’d like to meet:” section was compromised which is floating a transparent gif over part of their page. It is a pretty brilliant way to dupe someone into clicking out of myspace and into the world of “mystery” bulletins that the victim “didn’t post” and spammy comments posted to friend’s pages.
<div style="position:absolute;left:0px;top:0px;font-size:13px;
filter:alpha(opacity=01);-moz-opacity:0.01; opacity:0.01; -khtml-opacity:0.01;">
<a href="http://www.google.com/url?q=http://www.login-sm.info/">
<img src="http://img413.imageshack.us/img413/8882/thegifhb8.gif" width="1000"
height="10000" border="1"></a> </style>
If you fall victim just log in, change your password, and remove anything in your “Who I’d like to meet:” section.
Cena on
Tiffany on
Nicola on
cece on
zieak on
Karna on