Revamped Klez Worm Reappears
Existing databases, patches can constrain latest variant, which travels by e-mail and LAN.
T.W. Rabbit, special to PCWorld.com
A variant of a worm that takes advantage of preventable vulnerabilities in Microsoft's Internet Explorer and Outlook Express software is spreading, antivirus vendors are warning.
The new version, the Win32.Klez.H@mm worm, is a variant of the mass-mailing Klez worm that surfaced last year. The Klez worm reappears periodically, most recently appearing in March, when it caused minimal damage. Like the earlier version, the newest Klez spreads via e-mail and travels across files on a network.
Both versions of Klez insert a variety of subject lines in its infected messages, including one that masquerades as a virus alert. It pulls e-mail addresses from Outlook address books and even America Online's ICQ chat application, according to the antivirus vendors. Then it propagates by sending itself to the pilfered addresses.
Attacks Scattered
Klez tries to disable any antivirus programs installed on a PC that it infects. The worm removes the start-up registry keys that antivirus products use, according to representatives of Symantec, which markets Norton Antivirus. Symantec Security Response is rating this variant of Klez a three on its danger scale of five, rendering it a "medium" risk.
The Klez.H attachment is sometimes accompanied by another virus, called W32.Elkern, which can infect network files. It will cause system crashes if activated, the antivirus vendors say.
The original Klez itself reoccurs periodically, note antivirus experts at the security firm F-Secure. It activates on the sixth day of odd-numbered months, trying to overwrite certain file types on infected PCs.
Antivirus vendor Kaspersky Lab says it has received reports of infections by the newest Klez in Europe and Asia.
Patches Available
The latest virus data files from leading antivirus vendors should protect users against this variant, the vendors say.
Also, Microsoft addressed the vulnerability that Klez exploits in recent patches for IE versions 5.01 and 5.5, which are vulnerable to the worm. Microsoft offers a free download to address those vulnerabilities.
Microsoft Office Home and Student 2007
Acer Laptop Center
- Great year-end deals

for small business! -
Get 24/7 live remote AT&T Tech Support 360* service along with select Lenovo* PCs (with Intel® Core™ 2 Duo processors) and save up to 200!
-
HP EliteBook* 6930p Notebook with Intel® vPro™ technology and a free HP Basic Docking Station - $641 instant savings!
- *Other names and brands may be claimed as the property of others. ©2009 Intel Corporation. Intel, the Intel logo, vPro and Core trademarks of Intel Corporation in the United States and other countries. All rights reserved.
People who read this also read:
Best Prices on Security Software
Norton Internet Security 2010 - 3 UsersPrice: $26.30
Norton Internet Security 2010 - 3 UserPrice: $26.30
Internet Security 2010Price: $31.89
Norton 360 Version 3.0 - 3 LicensesPrice: $39.99
Total Protection 2010 - 3 UserPrice: $26.97
Norton 360 Version 3Price: $41.10
- 15 Minutes to a Secure Business Get the Secure in 15 toolkit starting with the "15 Minutes Month-at-a-Glance" calendar. McAfee will send you additional tools and tricks to stay protected around the clock.
- A Buyer's Guide to Data Protection Implementing data protection products and processes can be daunting. Make the right decisions by exploring what is available and what makes sense for your organization. Use this simple guide to evaluate different vendor offerings.
Cameras
Camcorders
Cell Phones
Components
Desktops
HDTV
Home Theater
GPS
Laptops
Monitors
MP3 Players
Networking &
Printers
Storage




