• Pardon our dust… Learn about the changes coming at BigBlueBall
  • Instant Messaging
  • Social Networks
  • Mobile
  • Tutorials

BigBlueBall

  • Home
  • Blog
  • Archives
  • Forums
    • Forum Home
    • Home
    • Learning
    • Money
    • Wellness
    • Community
    • Latest Topics
    • Topics with No Replies
    • Most Popular Topics
  • About
  • Contact Us

Avoid Phishing Worms on WLM

April 14, 2009 by Doris Kenney 6 Comments

Thank you to Jonathan Kay for giving his permission to repost his full blog entry from MessengerGeek on Live Spaces here for our BigBlueBall members. This is valuable information of which every WLM user should be aware. This is a wonderful explanation of what to watch out for, and what to do if you think you've been compromised.

As the most used instant messaging service in the world, it’s become more and more common to find your contacts sending out virus, spam and worm links through Messenger. There’s a lot of different types and different steps for removal, but the one most recently affecting people is a “phishing worm”.

The worm
More than likely you’ve seen the following from one of your contacts recently:

ruthblog_thumb4

There's no need to analyze the link, as it seems to randomly change and most likely new sites are added regularly. Although Messenger has allowed messages to be sent while appearing offline for quite some time, it’s important to note that these messages are sent out as offline messages (although no doubt this won’t always be a fact). As I know “Ruth” rather well, knew she wasn’t at her computer, and know this message isn’t something characteristic of her, I immediately knew this wasn’t legitimate.

Your best bet is to to stop here and not bother clicking the link without asking for confirmation of what this is from your contact. However, if you do proceed, you may find yourself at a web site like the following:

wormimage_thumb1

Although this isn’t a good fake, it does appear somewhat similar to the Messenger user interface and judging from the number of these links sent to me over the past few weeks, it has in fact tricked quite a few people. Once you provide your Windows Live ID username and password, it saves this information on the scammers server and redirects you to another web page full of advertisements and pointless images.

The scammers now have your credentials and can start their dirty deeds — logging into Messenger as you, looking through your e-mail, accessing your Microsoft billing information (if you have any) and spamming others with similar links. You wouldn’t trust a stranger coming up to you asking for your credit card information, so why would you trust a random website with your Messenger credentials?

The worst part of this whole process is that the typical support response is to run a virus scanner. This of course will find nothing (although a good percentage of Messenger worms and viruses aren’t detected by scanners anyway), as the scammers are logging in from another computer using the provided username and password. While this fruitless effort to find a non-existent virus on your computer is in progress, someone could be using or selling your information. Your information might be used within hours, days, or even years long after you’ve forgot this happened.

It is absolutely essential to change your password after your account has been compromised in this fashion on both Windows Live ID (which includes Messenger) and other sites where your log in using the same e-mail address (Facebook, for example).

Verifying you are at a true Microsoft site and changing your password
Most major web sites on the web today utilize an Extended Validation (EV) certificate. In most browsers this will appear with a green bar at the top. Among other security measures and encryption, this indicates that the site has gone through an audit to verify the identity of the site. To show this in action, let’s head over to https://account.live.com/ChangePassword.aspx to change the Windows Live ID password.

login_thumb2

signinsecure_thumb14Even if the site appears to look like a Live ID sign in page, look for the green address bar, lock icon and company name to verify it truly is. Additionally, depending in your Windows version, browser and Live ID site you’re signing into, you might need to click the ‘Sign in using enhanced security’ link on the page to see these indicators.

Finally you’ll arrive at the password changing page and can change your password. One minor feature that’s been added recently is an option to prompt you to change your password every 72 days. I’m not quite sure how this will work with regards to Messenger yet, but time will tell.

pass_thumb4

As mentioned previously, you should now use similar password changing facilities in other sites which utilize the same e-mail address and password to log in.

Easy steps to remember
To conclude, here are some easy steps to remember to avoid this happening to you:

  1. Before accepting an invitation or clicking on a link, verify that it appears to be legitimate. If in doubt, ask your contact.
  2. If a site is prompting for your username and password, verify your information will be going to a legitimate source that you trust.
  3. Don’t trust antivirus software to save you. Use discretion and avoid installing or running any applications from web sites you don’t trust, even if they came from a contact you do.

Share this:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X
  • Share on Pinterest (Opens in new window) Pinterest
  • More
  • Share on Reddit (Opens in new window) Reddit
  • Email a link to a friend (Opens in new window) Email
  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Tumblr (Opens in new window) Tumblr

Like this:

Like Loading...

Related

Filed Under: Tutorials, Windows Live Messenger Tagged With: instant messaging, phishing, security, Windows Live Messenger, worm

Comments

  1. Philip Yeoh says

    April 14, 2009 at 7:39 pm

    Excellent article here. Moral of the story is, don’t click on those strange links sent by your contacts-EVER!!

  2. Jeff Hester says

    April 15, 2009 at 8:54 pm

    Sounds advice. Generally it’s good for any instant messaging program to exercise caution before clicking any links sent to you, especially unprompted. I usually test by replying “what is this?” before I click. This alerts the “sender.” I’ve seen cases where they had no idea what I was talking about, or that they were infected, for that matter. Usually asking is all the test you need.

  3. detn8r says

    April 18, 2009 at 9:16 am

    I was victim to one of these last week but it happened on Yahoo Messenger (which I believe was tied in with a WLM contact). I’m not sure myself how it happened, but it doesn’t seem to take much that’s for sure.

  4. Mark Andrews says

    April 23, 2009 at 7:38 pm

    Good advice! I’m always amused when one of my friends falls victim to one of these schemes, and then their infected account starts hitting me up.

  5. Emilia Palmer says

    August 21, 2010 at 9:53 am

    i am only using free virus scanners like avast and avira but they seem to be great tools though.`:

Leave a ReplyCancel reply

About BigBlueBall

I am a technology geek, yet I gladly leave it behind to spend more time hiking the local trails or traveling the world. I am constantly experimenting, in search of new ways to improve my life. I believe in living out loud, and sharing what I learn with you.

My goal for BigBlueBall is simple: give you no-bull advice that you can use to improve your life.

Follow BigBlueBall

  • Facebook
  • Twitter

Subscribe to the BBB Newsletter

Sign up for my weekly update with advice for improving your life.

Google+

Top Posts & Pages

  • BigBlueBlog
  • Vista + SP2 = WLM FAIL!
  • Nimbuzz Intros IM for BlackBerry
  • Gamifying Health and Fitness: Five iOS Apps
  • Contact Us
  • About BigBlueBall

Recent Forum Replies

  • Who’s here? Can you still sign-in?
  • Project “BigBlueBall Revival”
  • Heard a rumor about AIM chat client begin discontined in the next few months. .
  • AIM Version 8
  • AIM Version 8

About BigBlueBall

Pardon the dust... but we are shaking things up at BigBlueBall. The site has been through a couple of evolutions, and this marks the latest and best yet!

Are you sick and tired of "Top 10" lists that don't really help you make decisions that will improve your life? That's a pet peeve of mine, too, and I'm doing something about it.

No more crap about the myriad of choices out there. Just the best choice. The right choice. The one fill-in-the-blank that rules them all. And all of them are vetted by us... through personal use and experience. These are the tools, the gadgets, the apps, the websites and the lifehacks that we use every day. No bullshit. Just good advice for better living.

Recent Posts

  • Setting Up a Smart Home
  • Making Moving Easier – A Look at Sortly
  • Top 10 Instant Messaging Apps Worldwide
  • Are You Twice As Likely to Sleep Naked?
  • Out With the Old, In With the New
  • Instagram Web Profiles Are Here
  • Windows Messenger is Dead… Long Live Skype

Tags

AIM android aol Apple beta BigBlueBall Blackberry chat comic digsby emoticon enterprise Facebook google Google Talk humor ICQ imbooster infographic instant messaging Instant Messaging iPhone Mac Meebo microsoft Mobile msn MySpace nokia security skype SMS social networking Social Networks sunday funnies sunday funny trillian Twitter video VoIP Windows Live Messenger Windows Live Messenger windows mobile yahoo youtube

Copyright © 2026 · Metro Pro Theme on Genesis Framework · WordPress · Log in

 

Loading Comments...
 

    %d