andsome Posted March 3, 2004 Report Share Posted March 3, 2004 a² NewsWorm.Win32.NetSky.D alert!If you can hear a beep melody between 6 and 9 am this morning, then your computer has been infected with the NetSky.D worm.This new worm only spreads via email attachments. The attachment filename is randomly choosen but always ends with .PIF.The subject is one of the following lines:"Re: Re: Document""Re: Re: Thanks!""Re: Thanks!""Re: Your document""Re: Here is the document""Re: Your picture""Re: Re: Message""Re: Hi""Re: Hello""Re: Re: Re: Your document""Re: Here""Re: Your music""Re: Your software""Re: Approved""Re: Details""Re: Excel file""Re: Word file""Re: My details""Re: Your details""Re: Your bill""Re: Your text""Re: Your archive""Re: Your letter""Re: Your product""Re: Your website"When the file is started, the worm installs itself on your PC to get activated each system startup. It also tries to deactivate installed antivirus software.It seaches the harddisk for email addresses which are used to spread itself.A more detailled analysis of the worm can be found in the a² Malware Database:http://www.emsisoft.com/en/malware/?Worm.Win32.NetSky.DNetsky.D can be detected and removed with a² with the latest signature updates loaded. The a² background guard blocks the worm immediately if it is started.Sincerley yours,Your a² Teamhttp://www.emsisoft.com Quote Link to comment Share on other sites More sharing options...
Redhat Posted March 3, 2004 Report Share Posted March 3, 2004 A wav file of the sound...http://www.f-secure.com/virus-info/v-pics/netsky_d.wav Quote Link to comment Share on other sites More sharing options...
andsome Posted March 3, 2004 Author Report Share Posted March 3, 2004 That's cute Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.