gkweb to miketavares Member 2004-Feb-19 7:52 am to miketavaresNot all ok so I download it not openning it and boom mcafee catches it good for me the funning thing is that it was my first email in the list the second Get Expert Help McAfeeVirus Removal Service Connect to one of our Security Experts by phone. Back to Top View Virus Characteristics Virus Characteristics File PropertyProperty Value File Namemessage.exe McAfee DetectionW32/[email protected] Length29,565 bytes CRC32270E1626 MD58b86499691278ea6cbe086380c231100 SHA1101D09B07EB131D20FE311E1BD947CC98BFFA74E Other Common Detection Aliases Company NameDetection Name AhnLabWin32/Netsky.worm.28008 AvastWin32:Netsky-BN

It's very difficult to lock down this one because it uses random phrases and attachments.I wonder what it's planning... · actions · 2004-Feb-18 5:34 pm · miketavaresjoin:2000-12-10North Dighton, MA miketavares Member I was just reinstalling XP on my primary system at home, and this and all the other threats make me glad I reinstalled unconnected, and didn't reconnect to the router until Your file %s is attached. check my blog Secure Web Gateway Complete web protection everywhere.

Back to Top View Virus Characteristics Virus Information Virus Removal Tools Threat Activity Top Tracked Viruses Virus Hoaxes Regional Virus Information Global Virus Map Virus Calendar Glossary I spend the better part of the day, finding out info about these outbreaks, making sure virus defs are up to date, and spend the rest of the day explaining to Sophos Clean Advanced scanner and malware removal tool.

By default, this is C:\Windows or C:\Winnt.

We also use some non-essential cookies to anonymously track visitors or enhance your experience of the site. ThemeWelcome · log in · join Show navigation Hide navigation HomeReviewsHowChartsLatestSpeed TestRun TestRun PingHistoryPreferencesResultsRun StreamsServersCountryToolsIntroFAQLine QualitySmoke PingTweak TestLine MonitorMonitor GroupsMy IP isWhoisCalculatorTool PointsNewsNews tip?ForumsAll ForumsHot TopicsGalleryInfoHardwareAll FAQsSite FAQDSL FAQCable TechAboutcontactabout uscommunityISP if the email address in the To: field is [email protected], %s would be replaced with the string "user".) Attachment: (Taken from the following list) improved_%s.pif detailed_%s.pif message_%s.pif your_file_%s.pif word_doc_%s.pif detailed_%s.pif Your_document_%s.pif For instructions on how to do this using Scan and Deliver, read the document, "How to submit a file to Symantec Security Response using Scan and Deliver." Antivirus Protection Dates Initial

DOWNLOADSDRIVERMANUALBIOS MotherboardsMainboards HDDHarddiskIDE CardsRemovabledrives CD-ROMCDRWDVD-ROMDVD-RWDVD+RWFirmwareUpdateUpgrade VGAGraphic CardVideo SoundSound CardAudioSoundcard ModemModemsISDN NotebookNotebooksLaptopLaptops MonitorTFTLCD SCSI Adapter PrinterPrintersPlotterMultioffice USB Scanner Tape Backup Input DeviceMouseJoyistick Digital CameraCamcoders NetworkCard LAN WirelessWifiAdapterAdaptersCardCards TestsDiagnosticsRAM MemoryHDD AntispywareRemoveSpywareadware...etc CPU SupportCompatibility Authentification for %s is required. It doesn't do much other than mass mail itself and remove Mydoom if found. http://directorsubmit.com/general/win32-netsky.html Login to PartnerNet Hi, My Details Overview Logout United States PRODUCTS Threat Protection Information Protection Cyber Security Services Website Security Products A-Z SERVICES Consulting Services Customer Success Service Cyber Security Services

I have attached your document %s. Have your PC fixed remotely - while you watch! $89.95 Free Security Newsletter Sign Up for Security News and Special Offers: Indications of Infection: Risk Assessment: Files with the following extensions are targeted: .adb .asp .cgi .dbx .dhtm .doc .eml .htm .html .jsp .msg .oft .php .pl .rtf .sht .shtm .tbb .txt .uin .vbs .wab .wsh .xml WORM_NETSKY.CV Alias:Email-Worm.Win32.NetSky.e (Kaspersky), W32/[email protected] (McAfee), [email protected] (Symantec), Worm/Netsky.E.1 (Avira), Mal/Generic-A (Sophos), Worm:Win32/[email protected] (Microsoft) WORM_NETSKY.Z Alias:Email-Worm.Win32.NetSky.aa (Kaspersky), W32/[email protected] (McAfee), [email protected] (Symantec), Worm/Netsky.AA.1 (Avira), Mal/Packer (Sophos),Description:This NETSKY variant propagates via email...

Note: We suggest that you submit any files that are detected as [email protected] to Symantec Security Response. Symantec has this at a level 3. Search Sign In Threat Analysis Threat Dashboard Free Trials Get Pricing Free Tools W32/Netsky-Y Category: Viruses and Spyware Protection available since:20 Apr 2004 00:00:00 (GMT) Type: Win32 worm Last Updated:22 Jan See the file %s.

if the email address in the To: field is [email protected], %s would be replaced with the string "user".) The mailing component harvests address from the local system. Everyone else rates it a "medium" threat. A typical path is C:\Documents and Settings\[UserName]\Application Data. %System% is a variable that refers to the System folder. Please confirm the document %s. %s is attached.

Modifications made to the system Registry and/or INI files for the purposes of hooking system startup, will be successfully removed if cleaning with the recommended engine and DAT combination (or higher). PureMessage Good news for you.