All the latest UK technology news, reviews and analysis

Intelligent worm 'chats' to IM users

by Iain Thomson

07 Dec 2005

Be the first to comment

  • Tweet this
Instant messaging
IM.Myspace04.AIM is spreading via AOL's Instant Messenger service

A new form of worm has been discovered that 'chats' to users of instant messaging programs to persuade them to download an infected file.

Security research firm IMLogic has reported that the worm, dubbed IM.Myspace04.AIM, is spreading via AOL's Instant Messenger service. 

Once on a PC the worm responds to any instant message and pretends to be the user. It suggests that the recipient downloads a file which contains a copy of itself. If the user responds, the worm sends a second message saying: 'lol no its not its a virus'.

"While IM.Myspace04.AIM uses similar social engineering techniques to other IM worms, this new breed of attack represents a shift toward interactive communication with intended targets, more effectively simulating a live user and thereby increasing infection rates," said IMLogic in a statement.

"As consumer bots such as the recently released AOL MovieFone and ShoppingBuddy gain popularity, hackers have also recognised the potential for bot technology to assist in their attacks on unsuspecting users."

Once installed on a PC the worm disables security software, installs a backdoor to allow remote control via IRC and changes system files. It then starts sending itself to contacts on the victim's buddy list.

"This is another wake-up call to businesses," said Donal Casey, security consultant at technology integration firm Morse.

"Because virus writers are trying to fool people into downloading their virus by pretending to converse with their victim to lull them into a false sense of security, businesses need to tackle this problem on two levels.

"They need to make sure that their antivirus software is up to date, and they need to make sure that they are educating employees on the company's security policies and procedures."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

25%

1%

11%

63%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

MS CRM Support Analyst / Microsoft Dynamics Support Analyst - CRM

2nd & 3rd Line CRM Support Analyst / MS CRM Systsems...

Digital Insight Manager - Web Analytics

Digital Insight Manager, Hertfordshire, £28,000. An...

Enterprise / Solutions Architect - Technology Evangelist

Enterprise / Solutions Architect. Salary £60,000 - £90...

Business Intelligence Developer

Business Intelligence Developer - Leeds. Salary £35,000...

To send to more than one email address, simply separate each address with a comma.