This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

Heartworm infects MS IM network

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

- http://www.networkworld.com/news/2006/0925…rc=rss-security
9/25/06
"…The worm, actually called W32.heartworm.a, affects users of Microsoft’s Windows Live Messenger service (formerly MSN Messenger), presenting users with a link to a Web site that tells them a virtual greeting card is waiting for them, according to FaceTime Security Labs*, a division of IM management and security company FaceTime Communications. That link brings unsuspecting users to an image of a heart with a poem written in Portuguese, which secretly installs files on the user’s PC that record personal and financial information. According to FaceTime researchers, who wrote about Heartworm in a Sept. 22 blog posting**, the heart-shaped message appears to be hosted on a site dedicated to exposing online hoaxes, perhaps in an attempt to encourage visitors to click through. Heartworm follows quickly on the heels of another worm called Pipeline***, which secretly delivers an executable file disguised as a JPEG that then installs rootkits and Trojans on systems running AOL's Instant Messenger service…"

* http://www.facetime.com/pr/pr060922.aspx
"…The initial file has the potential to infect MSN Messenger's more than 266 million users worldwide… Users can protect themselves by not clicking on links sent to them by other users, even if users appear on their contact list. Currently, most commonly used anti-virus programs do not provide protection from W32.heartworm.a…"

** http://blog.spywareguide.com/2006/09/im_wo…rd_for_you.html

*** http://blog.spywareguide.com/2006/09/aim_p…es_modular.html

:ph34r: