The Indian Cyber Crime Coordination Centre has warned WhatsApp users against malicious files named “Invoice,” “View Details” or “Document.” Such attachments may contain executable malware capable of compromising devices and active WhatsApp Web sessions.

‘View Details’ Files on WhatsApp May Compromise Accounts, I4C Says

The420 Correspondent
4 Min Read

New Delhi: Cybercriminals have adopted a new tactic to target WhatsApp users, prompting the Indian Cyber Crime Coordination Centre (I4C) under the Ministry of Home Affairs to issue a public advisory. According to the agency, fraudsters are sending files with names such as “View Details,” “Invoice,” or “Document” to trick users into downloading malicious software. Although these files may appear legitimate, downloading or installing them can put both the user’s device and WhatsApp account at serious risk.

I4C said the malicious files typically carry .exe or .dll extensions. In many cases, the files are compressed inside ZIP folders to avoid raising suspicion. Once installed, the malware attempts to gain access to the victim’s system and compromise active WhatsApp Web sessions.

India’s Largest Cybercrime Conference Nears: FutureCrime Summit 2026 Set for 6–7 August at Bharat Mandapam

If the attack succeeds, cybercriminals can misuse the victim’s WhatsApp account to send fraudulent messages to friends, family members, and other contacts. In several cases, attackers have used compromised accounts to request money, impersonate the account owner, or carry out other forms of cyber fraud.

The agency has advised users never to download or install files received from unknown numbers without verifying their authenticity. Any file ending in .exe or .dll should be deleted immediately. Users should always confirm the identity of the sender before opening any attachment.

Cybersecurity experts note that genuine WhatsApp documents are usually shared in formats such as .pdf, .docx, .jpg, or .png. Executable files, on the other hand, can run malicious code on a device and should be treated with extreme caution.

If a user has accidentally downloaded or installed a suspicious file, they should immediately open WhatsApp’s Linked Devices section and log out of all active sessions. They should also perform a full scan using a trusted antivirus program and consider changing passwords for important online accounts as a precaution.

Commenting on the growing threat, renowned cybercrime expert and former IPS officer Prof. Triveni Singh said cybercriminals are increasingly combining social engineering techniques with malware to deceive victims. He stressed that verifying the authenticity of any unknown file, link, or attachment before clicking remains one of the most effective ways to prevent cyberattacks. Even a single careless click, he warned, can expose not only a WhatsApp account but also banking, email, and other sensitive digital services.

I4C has urged citizens to report any suspicious files, messages, or cyber fraud without delay by contacting the National Cyber Crime Helpline (1930) or filing a complaint through the National Cyber Crime Reporting Portal. Prompt reporting can significantly improve the chances of preventing financial losses and helping authorities trace the perpetrators.

Experts emphasize that digital awareness remains the strongest defense against evolving cyber threats. Avoiding downloads from unknown sources, keeping applications updated, enabling two-factor authentication wherever available, and reporting suspicious activities immediately are essential steps to stay protected online.

About the author — Suvedita Nath is a science student with a growing interest in cybercrime and digital safety. She writes on online activity, cyber threats, and technology-driven risks. Her work focuses on clarity, accuracy, and public awareness.

Stay Connected