
Infiltrates instant messaging service...
By Joris Evers
Published: 16 June 2005 08:20 GMT
A new worm spread quickly on AOL's AIM instant messaging service on Wednesday afternoon but was contained within hours, experts said.
The worm spread in instant messages with the text: "LOL LOOK AT HIM" and included a web link to a file called "picture.pif". If that file was downloaded and opened, the worm would send itself to all contacts on the victim's AIM Buddy List, according to representatives from IM security companies Facetime and IMlogic.
With earlier, similar worms, downloading and opening a file would also install a backdoor or other malicious code on the victim's PC, said Jonathan Christensen, chief technology officer at Facetime. It's not yet known if this latest worm does that. Both Facetime and IMlogic were investigating the picture.pif file on Wednesday afternoon.
The worm first appeared around 12:00(PDT) and appears to have spread quickly until about 13:30(PDT), Christensen said. At that time, AOL is likely to have put a filter on its AIM service, blocking the worm's spread, he said. Also, not much later, the malicious code was removed from the web.
An AOL spokesman said: "We are either currently blocking it, or we will be in the very near future."
Facetime and IMlogic received several inquiries on the worm, signalling that it was widespread. The worm hit employees at HP and prompted tech support at the tech giant to send out an alert to employees.
IMlogic has identified the worm as a variant of the Opanki worm, which first surfaced last month. The new variant has been rated a "medium" risk.
The worm is the latest in an increasing number of cyber threats that use instant messaging to attack internet users. Just as with attachments and links in email, instant message users should be careful when clicking on links that arrive in instant messages - even messages from people they know, experts have warned.
Joris Evers writes for CNET News.com
Role • You will be responsible for managing the global affiliate business by proactively engaging with travel networks • Support the ...
Designing and implementing the delivery of a scalable architecture to support a cross-asset portfolio management platform using Grid and Enterprise ...
Development Manager with a strong knowledge of FX ECN platforms (eg Hotspot, Lava, Currenex etc), process flows and connectivity, Knowledge of FX ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business
Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business