News.com Mobile
for PDA or phone
Login: Forgot password? | Sign up

New IM worm chats with intended victims

By Joris Evers
Staff Writer, CNET News.com
Published: December 6, 2005, 5:43 PM PST

You can now instant message with a worm.

A new worm that targets users of America Online's AOL Instant Messenger is believed to be the first that actually chats with the intended victim to dupe the target into activating a malicious payload, IM security vendor IMlogic warned Tuesday.

According to IMlogic, the worm, dubbed IM.Myspace04.AIM, has arrived in instant messages that state: "lol thats cool" and included a URL to a malicious file "clarissa17.pif." When unsuspecting users have responded, perhaps asking if the attachment contained a virus, the worm has replied: "lol no its not its a virus", IMlogic said.

The malicious file disables security software, installs a backdoor and tweaks system files, the company said. Then it starts sending itself to contacts on the victim's buddy list.

But the worm is programmed so that the infected user cannot see the messages that are being sent out by the worm, according to IMlogic.

"This is a first," said Andrew Burton, director of product management at Waltham, Mass.-based IMlogic. This worm is not widespread, but attackers are just trying out this new technique, he said. "We will see one or two instances of an attack, there will be a refinement and then there will be an outbreak."

The inclusion of an IM bot is another sign that IM worms are becoming more sophisticated. Another worm, also spotted on Tuesday, takes a more traditional route: it spreads under the guise of a holiday greeting card, IM security specialist Akonix Systems said Tuesday.

The holiday worm, dubbed Aimdes.E, targets AIM users and arrives with the message: "The user has sent you a Greeting Card, to open it visit:" followed by a link. Once the target clicks on the link, the worm installs itself on the system. It opens a backdoor on the computer and sends itself to contacts on the buddy list, Akonix said.

Advice to users is to be careful when clicking on links in IM messages--even when they seem to come from friends--and to use up-to-date antivirus software. When receiving a link in an instant message, the best practice is to verify with the sender if the link was sent intentionally or not.

 42 comments
Post a comment

TalkBack

Another Windows vs. Mac battle?

J L   Dec 8, 2005, 7:24 PM PST

How about Gaim?

Ronald Ammerman   Dec 8, 2005, 6:40 PM PST

I was going to guess....

Chris Toohey   Dec 8, 2005, 9:48 AM PST

First time?

The Sentinel   Dec 8, 2005, 4:22 AM PST

There's a difference here.

Rab Townsend   Dec 8, 2005, 1:00 AM PST

AIM in general

Brandon Fowler   Dec 7, 2005, 11:59 PM PST

Pathetic

Tom Fiset   Dec 7, 2005, 7:50 PM PST

Worms

Eskie Eskie   Dec 7, 2005, 6:21 PM PST

"THIS IS THE FIRST"

N3td3v   Dec 7, 2005, 11:55 AM PST

What OS?

Jeremy Cook   Dec 7, 2005, 8:19 AM PST

Too Dang Funny - I wonder where the proofreader is today

Matthew S   Dec 7, 2005, 7:07 AM PST

Think how nasty they could get...

Chris Parks   Dec 7, 2005, 6:18 AM PST

This is NOT the first im virus to "talk back"!!

Terry Bates   Dec 7, 2005, 5:36 AM PST

haha, thats smart

Digitally Sick   Dec 6, 2005, 7:06 PM PST


Did you know?

Select a tab below to set your default view.

Scan the 15 newest and most read stories on News.com right now. Learn more

Updated: 8:58 PM PST
View as:
Unpatched Firefox 1.5 exploit made public Power could cost more than servers, Google warns Creative wants to make Apple pay Sober code cracked Sony says PS3 still on track for spring launch Sony fixes security hole in CDs, again Police blotter: Nude 'profile' yields Yahoo suit How tech billionaires live Intel calls MIT's $100 laptop a 'gadget' Consumers snap up LCD monitors Microsoft offers a new angle on maps Intel to battle rootkits Viacom nearing deal to acquire DreamWorks BellSouth, 8x8 launch VoIP service Cheers for Yahoo's move to a community-driven Web
Legend:
Older
Newer
Larger boxes indicate hotter stories.

Resource center from News.com sponsors

Concerned About Computer Security?

Education is the best defense

Computer security threats are part of daily life. But today's malware techniques present unprecedented challenges for businesses of all sizes. Learn how to protect yourself.

Learn from the experts>>

Top picks from News.com readers


Daily spotlight

Video: A video slam-dunk

Here's a look at the tech behind those TV and online highlights of pro basketball games, in a narrated video produced by the NBA and Silicon Graphics Inc.

Photos: Gizmos made in Japan

Japan is still a leader in product design and innovation. Here are some new and notable gadgets.

Video: "The power to organize" online

Meetup.com founder and CEO Scott Heiferman says Meetup is spreading beyond America. The service, Heiferman says, is helping "make the world a friendlier place."

Innovations battle natural calamities

Scientists hope integrating cutting-edge technology projects will help predict and mitigate natural disasters.

Debating Wikipedia's open-source label

High Impact The online encyclopedia is a broadly communal effort, but it's not run the same way as open-source software.

Police blotter: Nude 'profile' yields Yahoo suit

Woman says ex-boyfriend posted nude photos and her phone number in a Yahoo Personals profile. She sued for $3 million.

High-tech animation in indies' grasp

Competing with digital toon powerhouses like Pixar isn't easy. But cheaper tech, outsourcing are making it possible.

Ogre to slay? Outsource it to China

Affluent online gamers are paying workers at Chinese game-playing factories to play games' early rounds for them.

Video: The incredible, shrinking glaciers

This NASA-produced video is a dramatic and colorful look at our planet from high above, and the changes that are taking place.

Image: AOL searches for the stars

TMZ.com, AOL's new online magazine promises inside scoops on Hollywood's hottest stars.

Clock's ticking on new Sober onslaught

Mass-mailing worm is programmed to download new instructions in January, which could indicate a new outbreak.

Photos: New animal discovered in Borneo

A creature that looks like a cross between a cat and a fox is photographed in the rainforest.

advertisement
Click Here
CNET.com
Copyright ©2005 CNET Networks, Inc. All Rights Reserved. Privacy Policy | About CNET Networks | Jobs | Terms of Use