Yahoo Messenger malicious worm identified
Yahoo! Messenger users have been warned about a new worm that uses social engineering to run.


A new cyber threat is targeting Yahoo Messenger users and attempting to download a worm onto their systems, Symantec has warned.
Targets are sent instant messages from contacts in their list which contain a link supposedly taking the user to a photo, the data security firm explained in a blog.
In reality, once clicked the link will direct them to the worm executable. For it to be activated, the worm still requires the user's action to open or run the file.
Once up and running, the worm adds itself to the Windows Firewall List and stops the Windows Updates service, while ensuring it activates every time the system boots.
Then it seeks to propagate by locating Yahoo Messenger and sending links to the worm out to everyone on the contact list.
"It may also download and execute other malicious files," Symantec warned.
"We recommend Yahoo! Messenger users to be especially careful with what types of files they are opening, and be cautious with links received even from well known and trusted contacts. Many times becoming a victim can be avoided just by asking the contact who sent the link whether it's real or not."
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Tom Brewster is currently an associate editor at Forbes and an award-winning journalist who covers cyber security, surveillance, and privacy. Starting his career at ITPro as a staff writer and working up to a senior staff writer role, Tom has been covering the tech industry for more than ten years and is considered one of the leading journalists in his specialism.
He is a proud alum of the University of Sheffield where he secured an undergraduate degree in English Literature before undertaking a certification from General Assembly in web development.
-
Asus ZenScreen Fold OLED MQ17QH review
Reviews A stunning foldable 17.3in OLED display – but it's too expensive to be anything more than a thrilling tech demo
By Sasha Muller
-
How the UK MoJ achieved secure networks for prisons and offices with Palo Alto Networks
Case study Adopting zero trust is a necessity when your own users are trying to launch cyber attacks
By Rory Bathgate
-
Power stations under attack from long-running hacking campaign
News Dragonfly threat group is ramping up activities, say researchers
By Adam Shepherd
-
Symantec profits surge as firms prop up their cyber defences
News The company also announced plans to sell its web certificate business
By Dale Walker
-
Symantec to pay $4.65 billion to acquire Blue Coat
News Greg Clark to become Symantec CEO, promising new cloud security
By Aaron Lee
-
Symantec ditches reseller guilty of scamming PC users
News Silurian told people they had malware, then sold them Norton Antivirus for $249
By Joe Curtis
-
NATO builds up cyber alliance with Symantec tie-in
News Military industrial link up to fight cyber attacks
By Rene Millman
-
Junk emails fall to their lowest rate in 12 years
News Spam is dropping, says Symantec, but other malware threats are on the rise
By Joe Curtis
-
Kaspersky: "We have never been asked to whitelist malware"
News A company blog has revealed neither government nor any other entity has asked it to stop detecting malware
By Clare Hopping
-
Symantec confirms split into separate security & storage entities
News Storage and security will be separated as Symantec tries to boost sales in both
By Adam Lee