Latest news
Panda Software, leading antivirus software producer, warns users of a new e-mail virus: W32/Frethem.K. While this e-mail worm carries a rather low threat level, it is spreading rapidly throughout Europe. The e-mail message carries only one subject field: "Re: Your password!" and, as Klez, exploits the vulnerability in Internet Explorer 5.01 and 5.5 that allows the virus to run automatically when the user views the message in the preview pane.
Unlike Klez, the worm carries only one subject line:
Re: Your password!
The text of the message reads as follows:
ATTENTION!
You can access
very important
information by
this password
DO NOT SAVE
password to disk
use your mind
now press
cancel
Attachments (attached files):
Decrypt-password.exe
Password.txt
The initial variant of this worm, Frethem.G, appeared Saturday, with very few incidents reported. The variant, Frethem.K appeared this morning and is spreading rapidly throughout Europe, with many incidents reported in Denmark, Belgium, Spain and Asia. It is suspected the worm originated in Asia.
Panda Software has updated their signature files to detect and disinfect the Frethem.K worm and its variants. As the subject line is always the same, "Re: Your Password!" content filtering is suggested to prohibit the worm from entering the user's computer. Panda warns all users to exercise caution when viewing e-mail messages and attachments, and to update their virus signature files immediately from their website at: http://www.pandasoftware.com. Users whose computers have been infected by Frethem can download the updated version of the free disinfection tool PQREMOVE from http://www.pandasoftware.com. More information on W32/Frethem.K is available in Panda Software's Virus Encyclopedia at: http://www.pandasecurity.com.
It is also advisable to apply the security patch supplied by Microsoft that fixes the vulnerability exploited by the virus. This can be downloaded from: http://www.microsoft.com/technet/security/bulletin/MS01-020.ASP.
About the International Independent AV Developer:
Panda Software (http://www.pandasecurity.com) is a leading international developer of computer security software for all types of customers: corporate clients, small and medium sized companies and home users. Panda's 100% in-house, cutting-edge technology has received awards and quality certifications from the most widely respected IT security institutions. Panda Software was the first to allow truly automatic, daily signature updates, as well as centralized administration of antivirus protection, both of which have revolutionized the antivirus industry. The quality of Panda Software's products has been endorsed by the major industry watchdogs including Virus Bulletin, ICSA Labs and CheckMark.


Spotlight

Is it time to professionalize information security?
Posted on 23 May 2013. | The issue of whether or not information security professionals should be licensed to practice has already been the topic of many a passionate debate.

Review: Logging and Log Management
Posted on 22 May 2013. | Every security practitioner should be aware of the overwhelming advantages of logging and perusing logs for discovering system intrusions. But logging and log management comes with its own set of difficulties.

Experts highlight top data breach vulnerabilities
Posted on 22 May 2013. | Hidden vulnerabilities lie in everyday activities that can expose personal information and lead to data breach, including buying gas with a credit card or wearing a pacemaker.

A closer look at Mega cloud storage
Posted on 21 May 2013. | Once a novelty, nowadays many cloud storage services are fighting for their piece of the market in the virtual world. Mega offers 50GB of free space with great pricing on Pro accounts.

The CSO perspective on healthcare security and compliance
Posted on 20 May 2013. | Randall Gamby is the CSO of the Medicaid Information Service Center of New York. In this interview he discusses healthcare security and compliance challenges and offers a variety of tips.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.





