Joined
·
1,615 Posts
found this on extremetech :
According to a bulletin from Trend Micro, WORM_YAHA.G (also called [email protected]) is gaining ground on Klez -- the most widespread e-mail worm ever. Like Klez, Yaha is a mass-mailing worm that activates when the infected e-mail is rendered in a preview pane or opened for reading. (To do this, the worm exploits a vulnerability in Internet Explorer, Outlook, and Outlook Express first acknowledged by Microsoft in March 2002.) Once activated, Yaha disables antivirus and firewall programs and begins to propagate.
Yaha is even more aggressive than Klez, sending itself to potential victims gleaned from the infected machine's e-mail databases every few minutes. The subject lines used by the worm are sufficiently provocative to encourage most recipients to view its messages, triggering the infection. If the explosive spread of this latest strain continues, Yaha may become more prevalent than Klez by New Year's Day.
description of the worm from Trend Micro :
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_YAHA.G
According to a bulletin from Trend Micro, WORM_YAHA.G (also called [email protected]) is gaining ground on Klez -- the most widespread e-mail worm ever. Like Klez, Yaha is a mass-mailing worm that activates when the infected e-mail is rendered in a preview pane or opened for reading. (To do this, the worm exploits a vulnerability in Internet Explorer, Outlook, and Outlook Express first acknowledged by Microsoft in March 2002.) Once activated, Yaha disables antivirus and firewall programs and begins to propagate.
Yaha is even more aggressive than Klez, sending itself to potential victims gleaned from the infected machine's e-mail databases every few minutes. The subject lines used by the worm are sufficiently provocative to encourage most recipients to view its messages, triggering the infection. If the explosive spread of this latest strain continues, Yaha may become more prevalent than Klez by New Year's Day.
description of the worm from Trend Micro :
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_YAHA.G