TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
HTML_NETSKY.P
Overview

Malware type: Html

Aliases: Mal/Iframe-E(Sophos), Exploit.HTML.Iframe.FileDownload(Kaspersky), EXP/Iframe.FileDldr(Avira), HTML/IFrame (exact)(F-Prot), Exploit-MIME.gen.c(McAfee)

In the wild: Yes

Destructive: No

Language: English

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Low

Description: 

This HTML malware arrives as an email with an executable file attachment that is detected by Trend Micro as WORM_NETSKY.P.

It exploits a known vulnerability in Internet Explorer versions 5.01 and 5.5. known as the Automatic Execution of Embedded MIME Type. This vulnerability causes Internet Explorer to automatically run executable file attachments in email messages.

More information on this vulnerability is available at:

Microsoft Security Bulletin MS01-020

This malware runs on Windows 95, 98, ME, 2000, NT, and XP.

For additional information about this threat, see:
Solution
Technical Details

Description created: Apr. 11, 2004 11:48:10 PM GMT -0800
Description updated: Jun. 7, 2004 2:16:11 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.