W32.Netsky.E is a mass-mailing worm that uses its own SMTP engine to send itself to the email addresses it finds when scanning hard drives and mapped drives. This worm also searches drives C through Y for folders that have names containing "Shar," and then copies itself to those folders.
The Subject, Body, and Attachment vary.
- Virus definitions with the version number 60301p (extended version 03/01/2004 rev 16) and later are required to detect this variant.
- LiveUpdate virus definitions with version 60301v (extended version 03/01/2004 rev 22) detect this variant.
- This worm has an MD5 hash value of 0X3D23EC8B55840B95EA75197CE9446B6D.
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.