Pour compléter les explications déjà fournies...
Extrait du message d'alerte transmise par Trendmicro au sujet d'un des derniers virus à la mode
Malware Name: WORM_NETSKY.D
Risk Rating: Low
Detection availability: Since Control Pattern Release 790 version 04
(
www.trendmicro.com/download/pattern-cpr-disclaimer.asp)
Brief Description:
As of March 1, 2004, 12:51 AM PST, TrendLabs has received several infection
reports of this new NETSKY variant spreading in France, US, and Japan.
This memory-resident worm propagates via e-mail using its own SMTP engine.
The email that it sends out has the following details:
Subject: (any of the following)
Re: Your website
Re: Your product
Re: Your letter
Re: Your archive
Re: Your text
Re: Your bill
Re: Your details
Re: My details
Re: Word file
Re: Excel file
Re: Details
Re: Approved
Re: Your software
Re: Your music
Re: Here
Re: Re: Re: Your document
Re: Hello
Re: Hi
Re: Re: Message
Re: Your picture
Re: Here is the document
Re: Your document
Re: Thanks!
Re: Re: Thanks!
Re: Re: Document
Re: Document
Message Body:(any of the following)
Your file is attached.
Please read the attached file.
Please have a look at the attached file.
See the attached file for details.
Here is the file.
Your document is attached.
Attachment:(any of the following)
your_website.pif
your_product.pif
your_letter.pif
your_archive.pif
your_text.pif
your_bill.pif
your_details.pif
document_word.pif
document_excel.pif
my_details.pif
all_document.pif
application.pif
mp3music.pif
yours.pif
document_4351.pif
your_file.pif
message_details.pif
your_picture.pif
document_full.pif
message_part2.pif
document.pif
your_document.pif
It drops a copy of itself as the file WINLOGON.EXE in the Windows folder.
(Note: On Windows NT, 2000 and XP, there is a normal application named
WINLOGON.EXE in the Windows system folder.)
This malware arrives as a Petite-compressed executable file and is written
using Microsoft Visual C++, a high level programming language.
It runs on Windows 95, 98, ME, NT, 2000, and XP.
Conclusion: tout message ayant un des titres indiqués dans les explications à mettre à la poubelle sans réféchir, ni les ouvrir avant, bien sûr. Surtout si tu n'as pas un anti-virus à jour.