'Warhol' porn worm warning

'Fifteen minutes of fame' for malicious script

William Eazel

A 'Warhol' worm is terrorising users of Microsoft's Instant Messenger, and directing them to a porn site featuring malicious script.

A discussion thread on nerd news website Slashdot yesterday warned MSN Messenger users to beware of messages recommending them to go to the site at masenko-media.net/cool.html.

Advertisement

Clicking on the link will open Internet Explorer and take the user to a porn site that features a malicious script which exploits a known hole in the browser and hijacks the viewer's MSN Messenger contact list, sending the link to all the addresses it finds.

Microsoft issued a warning yesterday which read: "If you receive an unsolicited instant message directing you to go to an unknown website, please do not click on the link." Apparently a number of sites are using this malicious technique, not just masenko-media.net.

The software giant has released an update for MSN Messenger that addresses this issue. The latest six barrel patch for Internet Explorer should also close the hole.

This exploit has been dubbed a Warhol worm based on its ability to obtain a critical mass in a short amount of time, effectively gaining its "15 minutes of fame".

The worm overcomes the typical problem of obtaining its initial critical mass of infected hosts by quickly generating a 'hit list' of a few thousand vulnerable machines which have access to a few thousand more machines.

But some Slashdot posters are sceptical. One said: "First off, this is not a virus. It's an Internet Explorer exploit allowing access to your Messenger contact list and other Messenger functions.

"As the post noted, it is fixed with the latest IE patch. The actual problem was with IE's document.open scripting object, and how it was able to access local system objects from websites. This is not a problem with Messenger at all."

Microsoft has come under heavy fire for taking almost a month to release a patch fixing the vulnerability. Details are available here. The Microsoft advisory can be found here.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Make way for the uber worm

Hackers work on worm that could hit 10 million sites in hours

Microsoft plugs holes with a six-pack

Redmond Security Policy: now you see it, now you don't

Warhol Worm 'could hit one million PCs'

Code Red threat fades, but worse may follow.

Related whitepapers

Related jobs

Most watched

Summit: Views From the Valley

V3.co.uk's US office weighs in on the information overload crisis

John Chambers speaks on collaboration

Cisco boss talks up new offerings

Analysis and Reports

Remote access - Three steps to getting connected

3.4 million UK professionals now work from home – is your company equipped?

Cost benefits of a global collaboration network

This white paper is a must read for organisations looking for evidence of the bottom-line benefits of high-definition video and voice communications

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

White paper library

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Spotlight

Summit video: Intel discusses processors designed for data overload (part one of two)

Intel explains how its Xeon processors can handle data-intensive apps

fujitsu logo

Unite calls off Fujitsu strike

Talks between the two sides will extend into the new...

Richard Thomas

Summit: Q&A Richard Thomas, former Information Commissioner

Thomas speaks out on government databases and data privacy

Symantec office

Summit: Symantec makes the case for smarter storage

Company talks up unified approach

Primary Navigation