If geeks love it, we’re on it

New Netsky virus variant Infects without opening e-mails

New Netsky virus variant Infects without opening e-mails

PCs that are not protected by the latest security updates can be infected by a new variant of the Netsky worm without any email attachments being opened.

According to security experts, Netsky.V spreads via email with subjects such as ‘Converting message. Please wait…’ and ‘Please wait while loading failed message…’ but has no attachments.

Netsky.V exploits bugs in Microsoft’s software, meaning net users can be infected just by reading an email. The worm copies itself to the Windows folder as KasperskyAVEng.exe and adds the registry entry HKLMSoftwareMicrosoftWindowsCurrentVersionRunKasperskyAVEng = KasperskyAVEng.exe.

By creating this entry, Netsky.V ensures it is run every time Windows is started and sends itself to the addresses it has collected from the infected computer, using it own SMTP engine.

Graham Cluley, senior technology consultant for Sophos, said:

“Home users are especially vulnerable to this kind of attack as their computers are often not properly protected with a personal firewall or the latest anti-virus updates.”

Be very much on the lookout for this new variant.

Headsup to Dexter for being beady-eyed and getting this noticed fast.

Source: Web User

Comments

  1. Dexter
    Dexter Do your updates folks! This one appears to be relatively harmless to your PC, but recent history shows that once a vulnerability is known, copycats come out, and the copycats are often "blended-threats", with worse payloads. Do your Windows Updates, and update your anti-virus software.

    No anti-virus software? Look here for recommendations, including some free options!

    Dexter...
  2. EyesOnly
    EyesOnly Patched and done. Now this bug really gives me the creaps.
  3. QCH
    QCH Thanks Dexter & Shorty....
  4. dragonV8
  5. Straight_Man
    Straight_Man Yup, criticals are indeed very important. VERY!

    John D.

Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!