Trend Micro Medium Risk Virus Alert - WORM_NETSKY.P

Trend Micro Newsletters Editor newsletters at trendmicro.rsc03.com
Mon Mar 22 15:11:43 PST 2004


Dear Trend Micro customer:

As of March 22, 2004  7:05 AM PST, TrendLabs has declared a Yellow Alert to control the spread of WORM_NETSKY.P. 
TrendLabs has received numerous infection reports of this malware spreading in the US and Europe.  

This new NETSKY variant propagates via email using its own Simple Mail Transfer Protocol (SMTP) engine. 

The email that it sends out has varying subjects, message bodies, and attachment file names. It gathers email addresses from files with certain extension names. 

It also has the ability to propagate via network shares by dropping copies of itself to shared folders of the affected system. 

It exploits a known vulnerability in the Internet Explorer involving the incorrect MIME header vulnerability (MS01-020) to execute the malware when the email is read. More information on this vulnerability is available at: 

         http://www.microsoft.com/technet/security/bulletin/MS01-020.mspx 


TrendLabs has released the following EPS deliverables: 

TMCM Outbreak Prevention Policy 99 (ATA: 7:34 AM PST)
Official Pattern Release 832 (ATA: 7:22 AM PST)
Damage Cleanup Template  296 (ETA 1 hour 45 minutes)



______________________________________________________________________
This message was sent by Trend Micro's Newsletters Editor using Responsys Interact (TM).

If you prefer not to receive future e-mail from Trend Micro's Newsletters Editor:
    
http://trendnewsletter.rsc03.net/servlet/website/PersonalizedForm?mgLEwkLMLkLgJL9LgmLk.40hktELtHpsEMkLLIlK-jNLlmphglFMkLLIlKDhknEhE.3dLgLkpJ8sHlm_zNIlJkpILkl


To view our permission marketing policy:
    http://www.rsvp0.net




More information about the freebsd-questions mailing list