|
|
 |
|
|
Pages: 1
W32/Yarner@MM Worm
(Click here to view the original thread with full colors/images)
Posted by: TotalRecall
Yarner is a worm which propogates via an integrated SMTP email program which forwards the message to users inside the Outlook address book and was discovered today in Germany. After forwarding the message, the virus adds itself to the startup procedure and deletes the and unlocked files on the c: drive.
The message arrives with the title "Trojaner-Info Newsletter [Date]" and a spoofed email address from webmaster@trojaner-info.de. The body of the email is in German, but basically says that a file is included to fix a virus. The file is named yawsetup.exe and should not be downloaded or executed. So far, the virus has only been seen in Germany, but could quickly spread.
More information and removal options are available at ZDNet and McAfee.
|
|
|
|
|