Virus Encyclopedia
Welcome to the Virus Encyclopedia of Panda Security.
Encyclopedia
GetVirusCard
True
0
Effects
WKSSVC is a malicious code used to exploit a vulnerability in the library WKSSVC.DLL on Windows XP/2000 computers.
This vulnerability is due to a buffer overflow in the NetpManageIPCConnect() function of the Workstation Service.
If the target computer is vulnerable, WKSSVC allows arbitrary code to be executed in it.
Panda Security detects the code necessary for attempting to exploit the MS06-070 vulnerability as WKSSVC, thus warning users on a network traffic increase associated to this threat and preventing them from being affected.
If you have a Windows 2003/XP computer, it is recommendable to download and apply the security patch referred to the vulnerability in Workstation Service, which is included in the security bulletin MS06-070. Click here to access the web page for downloading the patch.
Means of transmission
The vulnerability can be exploited by creating a specially crafted message and then distributing it using any means: for example, hosting it in a web page and enticing users into accessing it or sending it in an email message.