Summary

Summary
Action
More Information
| Protection available since | 10 June 2004 13:53:34 (GMT) |
|---|---|
| Detected by | All Sophos products |
- Free virus, spyware, and adware scan
- Test your existing anti-virus protection
- Find threats your anti-virus missed
Action

Summary
Action
More Information
Please follow the instructions for removing worms.
More Information
VBS/Pub-A is a polymorphic mass-mailing virus.
On the 6th, 13th, 21st or 28th of the month VBS/Pub-A will attempt to delete all files on fixed and remote (networked) drives of the computer.
On other days the virus will attempt to append its code to all files, on fixed and remote drives, with the extension VBS, VBE, HTM, HTT, HTA, HTML and ASP. After infection these files will be set to read-only.
VBS/Pub-A will also attempt to mail everyone in the Outlook address book each time it is run.
Infected E-mails will have the subject of "RE" with no message body and an attachment matching the name of the infected file being run. Due to the fact that when the virus infects HTM, HTT, HTA, HTML and ASP files it will drop and run a file "PUBPRN.VBS" in the windows folder the attachment is likely to be called "PUBPRN.VBS".
