Home > Threat descriptions >

Worm:W32/NetSky.Y

Classification

Category: Malware

Type: Email-Worm

Aliases: NetSky.Y, W32/NetSky.Y@mm

Summary


NetSky.Y worm was discovered late night on April 20th, 2004. It is similar to the Netsky.X variant found earlier during the same day. It is repacked with PEpack.

Removal


Automatic action

Once detected, the F-Secure security product will automatically handle a harmful program or file by either deleting or renaming it.

Eliminating a Local Network Outbreak

If the infection is in a local network, please follow the instructions on this webpage:

Knowledge Base

Find the latest advice in our Community Knowledge Base.

About the product

See the manual for your F-Secure product on the Help Center.

Contact Support

Chat with or call an expert for help.

Submit a sample

Submit a file or URL for further analysis.

Technical Details


For more information on Netsky.X see: Netsky.X

Netsky.Y sends email messages that look as follows:

Subject: Delivery failure notice (ID-random number)
Attachment: www.random domain name.random user name.session.random number.com

The body of the message contains one of the following words:

Partial, External, New or Delivered

followed by the text:

message is available