W32.Netsky.L@mm is a mass-mailing worm that uses its own SMTP engine to send itself to the email addresses it finds when scanning hard drives and mapped drives.
The "sender" of the email is spoofed, and its subject, message body, and attachment vary. The attachment has a .pif extension.
This threat is compressed with UPX.
- Symantec Consumer products that support the Worm Blocking functionality automatically detect this threat as it attempts to spread.
- The worm has an MD5 hash value of 0x7A84376F0D8361A3B7EB6BCC6815FE34.
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.