NEWS A new mass-mailing virus, which disguises itself as a file sent by a computer user's network administrator, began infecting systems on Friday. The worm, which is being dubbed ‘mimail’, attempts to exploit a vulnerability in Internet Explorer that allows a script to be executed by an infected computer. The worm then tries to use that script to mass email itself, potentially clogging mail servers or slowing down networks, according to anti-virus company Symantec. The arrival of Mimail comes amid heightened fears that a large-scale attack on the internet could be looming. The US government warned last week that a widespread flaw in Windows could be used to generate an attack. The email that carries the worm has “your account” in the subject line, according to Symantec, and the body reads, "Hello there, I would like to inform you about important information regarding your e-mail address. This e-mail address will be expiring. Please read attachment for details." It is then signed "Best regards, Administrator" and contains an attachment labelled "message.zip" that carries the malicious code. In terms of its method, the mimail bug is somewhat similar to other mass-mailing worms, said Sharon Ruckman, a senior director at Symantec Security Response. What's trickier than usual, she said, is the way the email that carries the worm tries to get people to open the attachment. "The social engineering aspect [is] a lot more serious," Ruckman said. "You believe it was the administrator from your own domain, whether that is your company or your ISP." Also of note, Ruckman said, is that the mass emailing code is contained in an HTML file, a type of file not normally associated with executing programs. Ruckman recommended that corporations either delete the attachments at the server level or block messages with the "your account" subject line. As of 1:45 p.m. PST, Symantec said it had received 125 total submissions of the worm and had rated it as a threat level of 3 on a scale of 1 to 5. Ina Fried writes for CNET News.com.
Latest worm uses IT administrator tactics
Mimail bug tries to convince you it was sent by the IT department
Post your comment
In order to post a comment you need to be registered and logged in.
You can also log in with Facebook. Log in or create your silicon.com account below
Latest Networks stories
Get silicon.com's daily newsletter
-

Enter your email to register
Featured white papers
-
Magic Quadrant for WAN Optimization Controllers.
Oversight is an important step to keeping something in check- whether it's a group of kids at recess or a suite of...
-
WAN Optimization for Today and Tomorrow.
It was only a few years ago when the idea of mobile computing seemed like a distant reality. Many could see it coming,...
-
Using pay-as-you-grow model for better agility
Enterprise IT teams are being challenged to increase overall IT flexibility and business agility by incorporating...
Popular Networks stories
Keep in touch with silicon.com
-
Connect with silicon.com on Facebook
Discuss the news of the day with the silicon.com team
-
Follow silicon.com on Twitter
Get regular updates from the silicon.com editors
-
Join the silicon.com LinkedIn networking group
Network with your peers and share expertise
Latest jobs
-
HR Consultant
HR Consultant- CIPD Qualified, Public Sector, Trade UnionsHigh profile public sector role based in Darlington requires...
-
1st line Support- Croydon
My client- A large consultancy based in Croydon are looking for a 1st/2nd line helpdesk support candidate on an...
-
IT Security Specialist , Big Learning + Move into Pre-Sales
IT Security Specialist , Big Learning + Move into Pre-SalesSC Cleared, UK National - Intensive training offered on...
silicon.com newsletters
-
Stay up to date with silicon.com newsletters
Keep up with the latest news and analysis from silicon.com with our free email newsletters





