Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Microsoft > Windows Live

March 24th, 2008, 20:41 GMT · By

Windows Live Messenger Friendly Infections

SHARE:

Adjust text size:



Enlarge picture
Browsers and operating systems are still the preferred avenue for attacks, vulnerability exploits and spreading malicious code. But at the same time, the consistent effort poured by developers to bulletproof the main attack vectors from Windows Vista to Linux, and from Internet Explorer 7 to Firefox, means that malware needs to find alternative open doors in order to compromise and infect computers. Attacks
are shifting away from traditional targets such as Windows and IE and onto third-party applications including instant messaging clients. In this context, security company Sunbelt Software pointed to the discovery of a new piece of malware spreading through the most popular IM clients on the market including Windows Live Messenger, ICQ, Yahoo IM and AIM.

"A relatively new naughty little worm courtesy of Seedcorn Advertising (IM-Worm.TopInstalls.A) does nothing noticeable upon infection, but if you've got ICQ, Yahoo IM, AIM or MSN Messenger, it automatically sends all of your buddies a link to an installer for a full infest of bundled adware/malware," revealed Alex Eckelberry, President Sunbelt Software.

The worm, once it has infected a system, is designed to spread itself via messages sent to all the friends in the contact list. As you can see from the adjacent image, the message containing a link to the malicious code is put together as not to rise any suspicions that it might be anything than what it is pretending.

TopInst_worm
Enlarge picture
"Hey, install this ICQ fix to make sure we'll have stable conversations, I already did. [Link] Make sure you installed it before write me - otherwise, without this fix my IM crashes and I can lost contact list," reads the message sent out by the IM-Worm.TopInstalls.A worm to a potentially new victim. Unlike attacks that rely on security bugs, IM-Worm.TopInstalls.A does not exploit a vulnerability in the instant messaging clients.

Instead, it preys on the trust of IM users in a new nuance of an old trick from the social engineering bug. Such a recommendation from a friend is hard to ignore, and even harder not to carry out, becoming infected in the process. Just be sure to pay extra attention to such messages, and always look for dissonant elements, like flagrant spelling and grammatical errors that generaly give out a fake message.

TELL US WHAT YOU THINK:

4,840 hits · 1 comment · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Windows Vista Activation Crack

Windows XP Service Pack 3 Leaked Details!

Download Windows XP Pro Service Pack 3 Build 2

How to Install Ubuntu 7.04 (Windows User P.O.V.)

Windows Vista Phone Activation Crack

READER COMMENTS:


Comment #1 by: Michael Breed on 02 Mar 2010, 14:36 UTC reply to this comment

I've downloaded Maiwarebytes and ran the latest updae (1.44). The system did not detect any viruses but I've been told several people still receive the fake IM messages. What would be the next step to help clear up the fake/bogus IM messages?

Thx,
... Mike

Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM