New "phishing" virus/worm link from Live Messenger? (this really looks like you)

I’ve just received this message from a friend:

this really looks like you :S hxxp://photoshare.ph.funpic.de/viewimage.php?=eagle1.xxxx@hotmail.com

I clicked on the link (me=stupid for this time), Avast shows the warning that there’s a virus/worm. I delete the file permanently. However, my sister just got the similar message from me. I’ve got a feeling the link “phished” my password somehow (or maybe, it just got my whole contact list and send the link to each one of them…). So, I changed my live password and uninstall/reinstall live messenger. I’m testing now to see if I still send messages to others…

ADMIN: Please do not link live samples.

Hmm I have a similar issue but this is not detected by avast or spybot search and destroy :frowning:
I received a MSN msg from a friend with the following

hey, is this really you?? hxxp://msngallery.gigacities.net/index.php?=taliesinxx@hotmail.com ( this has been modified to disable the link , do not attempt to visit this URL or run the *.com file!! ) >:(

being a trusting lad ( why would my friends msg me a bad link it’s never happened before and I’ve been using msn for over 8 + yrs ) I click on the link than was prompted to run a *.com file (DOS file ) being an silly lad I clicked on ok ( It was a long day at work lol :P) and I guess something installed, at this point I discovered I’ve made a error and should never have done this.

I am running vista x64 version and have checked the registry as well as services and can not find anything that appears to be out of order , no unwanted services are running and no extra run commands in the registry , I have downloaded and saved the *.com file that is named “IMG00231.JPG-live.messenger.com” and scanned it but nothing is detected, I have also done a full system HDD Thorough scan and still nothing is detected. :cry:

Oh and BTW IMG00231.JPG-live.messenger.com also resolves to a web address when entered into your web browser. :o
Also cmd netstat /a doesn’t display any unusual connections :-\

Any advice on what I should do with this one or do you think I’m good to go and didn’t become infected ( at this stage no one on my contact list is gettng any non normal MSG’s from me )

  • I doubt very much that this has affected my system as i’m running a x64 bit OS