Yahoo Messenger malicious worm identified
Yahoo! Messenger users have been warned about a new worm that uses social engineering to run.
A new cyber threat is targeting Yahoo Messenger users and attempting to download a worm onto their systems, Symantec has warned.
Targets are sent instant messages from contacts in their list which contain a link supposedly taking the user to a photo, the data security firm explained in a blog.
In reality, once clicked the link will direct them to the worm executable. For it to be activated, the worm still requires the user's action to open or run the file.
Once up and running, the worm adds itself to the Windows Firewall List and stops the Windows Updates service, while ensuring it activates every time the system boots.
Then it seeks to propagate by locating Yahoo Messenger and sending links to the worm out to everyone on the contact list.
"It may also download and execute other malicious files," Symantec warned.
"We recommend Yahoo! Messenger users to be especially careful with what types of files they are opening, and be cautious with links received even from well known and trusted contacts. Many times becoming a victim can be avoided just by asking the contact who sent the link whether it's real or not."
Sign up today and you will receive a free copy of our Future Focus 2026 report - the leading resource for IT decision-maker insight on priorities and investment areas in AI, security and more.
Tom Brewster is currently an associate editor at Forbes and an award-winning journalist who covers cyber security, surveillance, and privacy. Starting his career at ITPro as a staff writer and working up to a senior staff writer role, Tom has been covering the tech industry for more than ten years and is considered one of the leading journalists in his specialism.
He is a proud alum of the University of Sheffield where he secured an undergraduate degree in English Literature before undertaking a certification from General Assembly in web development.
-
The OpenAI and Anthropic containment breaches are a bit spooky, but also quite sillyOpinion An AI leaving notes to future versions of itself is pure sci-fi; forgetting to lock down an environment is prosaic
-
Bringing data to the heart of AISponsored AI is changing our approach to data, find out how HPE Alletra Storage can help your business
-
Power stations under attack from long-running hacking campaignNews Dragonfly threat group is ramping up activities, say researchers
-
Symantec profits surge as firms prop up their cyber defencesNews The company also announced plans to sell its web certificate business
-
Symantec to pay $4.65 billion to acquire Blue CoatNews Greg Clark to become Symantec CEO, promising new cloud security
-
Symantec ditches reseller guilty of scamming PC usersNews Silurian told people they had malware, then sold them Norton Antivirus for $249
-
NATO builds up cyber alliance with Symantec tie-inNews Military industrial link up to fight cyber attacks
-
Junk emails fall to their lowest rate in 12 yearsNews Spam is dropping, says Symantec, but other malware threats are on the rise
-
Kaspersky: "We have never been asked to whitelist malware"News A company blog has revealed neither government nor any other entity has asked it to stop detecting malware
-
Symantec confirms split into separate security & storage entitiesNews Storage and security will be separated as Symantec tries to boost sales in both