Experts warned yesterday that the recently discovered Lovgate virus contains backdoor Trojan code that could allow hackers to remotely access compromised systems.
W32/[email protected] was first discovered on 23 February and has spread around the world, with the UK, Europe and Asia Pacific suffering the most widespread infection.
The worm propagates via email by replying to entries in the user's Outlook email client. Antivirus firm Network Associates has given it a 'medium' risk rating.
The company said that users will not immediately notice the infection because of the way Lovgate spreads using network shares.
It will copy itself to folders and subfolders using the following filenames:
Lovgate also packs a 77,824-byte Trojan file - called ILY.DLL, 1.DLL, REG.DLL or TASK.DLL - which opens a backdoor to port 10168.
Once the Trojan is installed it sends an email notification to the hackers who first propagated the virus informing them that the computer has been compromised.
Details and a clean up procedure for Lovgate can be found online at the Network Associates website here.
Cotton seedling freezes to death as Chang'e-4 shuts down for the Moon's 14-day lunar night
Fortnite easily out-earns PUBG, Assassin's Creed Odyssey and Red Dead Redemption 2 in 2018
Meteor showers as a service will be visible for about 100 kilometres in all directions
Saturn's rings only formed in the past 100 million years, suggests analysis of Cassini space probe data
New findings contradict conventional belief that Saturn's rings were formed along with the planet about 4.5 billion years ago