Skip to main content

Symantec finds new worm with ‘Here you have’ e-mails

Email with Subject Here You Have
Image used with permission by copyright holder

A new malicious worm is being spread through e-mails with the subject line, “Here you have,” said security giant Symantec on its Security Response blog. The Security Response team is actively monitoring the threat.

The e-mail asks the recipient to click on a link embedded in the message. Disguised as a PDF file, this link points to a malicious program file online. When the user clicks on this link, the program file is downloaded and executed, installing the worm on the computer. The Security Response team identified the worm as W32.Imsolk.B@mm, and noted it may disable antivirus products, so the user remains unaware of the attack. W32.Imsolk.B@mm is also known as W32/Autorun-BHO by Sophos, W32/VBMania@MM by McAfee, and WORM_MEYLME.B by Trend Micro.

Once the computer is compromised, the worm attempts to send the original e-mail to all addresses found in the user’s addressbook, or to hop through the LAN infecting other computers by copying to open drive shares on the network. Merely opening the folder containing the worm executes it. E-mail servers are getting overwhelmed as the compromised machines automatically create and send a large volume of messages.

In addition to removable and mapped drives, the mass-mailing worm spreads through shared folders and instant messaging. If you suspect your computer has been infected, take it offline immediately and disconnect devices to prevent spreading the worm through the local network.

Just as an aside, even though the link appears to be a PDF file, this latest attack is not the zero-day exploit for Adobe Acrobat and Reader. This is pure social engineering, where the attack requires the user to click on a link in an e-mail. While not new, hackers continue to find it effective.

Fahmida Y. Rashid
Former Digital Trends Contributor
This laptop beats the MacBook Air in every way but one
Lenovo Yoga 9i Gen 9 top down view showing tent mode.

The Lenovo Yoga 9i Gen 9 Mark Coppock / Digital Trends

There are plenty of great 13-inch and 14-inch laptops out there, but none that can defeat the M3 MacBook Air head-to-head. That notebook is the complete package when it comes to ultra-portable laptops.

Read more
How to easily connect any laptop to a TV
An image-editor app being used to edit photos on a laptop.

If you’re using a laptop on a daily basis, you’ll know how tiring it can get to stare at a 13-inch screen for hours on end. This is why it’s great that most modern PCs can be connected to a TV. Not only does this give you a bigger display to work with, but you’ll still be able to use your laptop as you normally would. So no saying goodbye to those handy trackpad gestures!

Read more
The Asus ROG Ally just got a game-changing update
Asus ROG Ally handhelds side by side.

Asus' ROG Ally is one of the best handheld gaming PCs you can buy, and now it's getting even better. Asus is updating the handheld with AMD's Fluid Motion Frames (AFMF). This is a driver-level feature that adds frame generation to the majority of DirectX 11 and 12 games, which should vastly improve performance.

We've seen AFMF in action on AMD graphics cards previously. The feature launched late last year for desktop and mobile AMD graphics cards, but the ROG Ally oddly didn't support the feature. Asus' handheld uses the Ryzen Z1 chipset, which includes both an AMD processor and graphics card, but it uses its own specialized driver. Because of that, it didn't receive AFMF support right away.

Read more