| What is W32.Netsky.Q@mm and how does it affect me?
As of March 29, 2004, due to an increase in submission rates, Symantec
Security Response has upgraded W32.Netsky.Q@mm from a Category 2 to a
Category 3 level threat.
The characteristics of the W32.Netsky.Q@mm worm include:
· Two components: a dropper and a mass-mailing component.
· The worm uses its own SMTP engine to send itself to email addresses
it finds when scanning disk drives.
· Also, the worm uses the incorrect MIME Header that can cause IE to
Execute E-mail Attachment vulnerability to cause systems that are not
patched to auto execute the worm when reading or previewing an infected
message.
· The “From” line of the email is spoofed and its “Subject” line and body
vary.
· The attachment name also varies and has a .exe, .pif, .scr, or .zip
file extension.
Notes:
· Symantec antivirus products that support Worm Blocking functionality
automatically detect this threat as it attempts to spread.
· The worm has an MD5 value of 0x04871d17dbbd1911afc76aad6d9dbd20.
__________________ Hybrid linkShareLive <-- Free and Paid Directory Listing (get your website listed now) 'Forever busy.... is there more to life?' Microsoft TechNet Member My Space Profile: http://www.myspace.com/syrusxl |