You're in: Panda Security > Home Users > security-info > about-malware > encyclopedia > overview
Active Scan. Scan your PC free
Panda Security Product Line 2012

Virus Encyclopedia

Welcome to the Virus Encyclopedia of Panda Security.

Encyclopedia GetVirusCard True 0

WKSSVC

 
Threat LevelHigh threatDamageSevereDistributionNot widespread

Effects 

WKSSVC is a malicious code used to exploit a vulnerability in the library WKSSVC.DLL on Windows XP/2000 computers.

This vulnerability is due to a buffer overflow in the NetpManageIPCConnect() function of the Workstation Service.

If the target computer is vulnerable, WKSSVC allows arbitrary code to be executed in it.

Panda Security detects the code necessary for attempting to exploit the MS06-070 vulnerability as WKSSVC, thus warning users on a network traffic increase associated to this threat and preventing them from being affected.

 

If you have a Windows 2003/XP computer, it is recommendable to download and apply the security patch referred to the vulnerability in Workstation Service, which is included in the security bulletin MS06-070. Click here to access the web page for downloading the patch.

Means of transmission 

The vulnerability can be exploited by creating a specially crafted message and then distributing it using any means: for example, hosting it in a web page and enticing users into accessing it or sending it in an email message.