Zen Neeon MP3 Player Infected with Windows Wullik Worm Virus   - 4,016 Views, 2 Comments

Summary: Wullik.B (W32.Wullik.B@mm) has infected the Zen Neeon MP3 player. Creative says that nearly 4,000 of the Zen Neeon MP3 players were shipped with the worm, and has issued a recall.

Previous Article « Hurricane Katrina Email Hoax Invokes Red Cross
Read Next Article » Free Credit Report Online

  Follow Anne on Twitter     Friend Anne on Facebook

Creative’s Zen Neeon MP3 player has been shipped with an extra ‘feature’: the W32.Wullik.B Windows worm (also known as Wullik-B, and Rays-A). The popular Zen Neeon player is best known for its bright colours and the large amounts of real estate it takes up at non-iPod selling retail outlets.

Wullik.B, whose full name is W32.Wullik.B@mm, is a mass-mailing worm, meaning that once it infects a machine, it looks for all of your contacts in Outlook, to whom it then emails itself.

The file has compromised nearly 4,000 Zen Neeons, all of which shipped in late July from Creative’s facilities in Japan. A statement by Creative attributes Wullik.B’s spread to the Zen Neeon to an infected Windows machine during the production process.

Oops.

According to both Creative, and various security companies, the Wullik worm is in an infected file on the Neeon called “Winfile”. It poses a risk when connected to the Neeon user’s computer, and particularly if while browsing the Neeon they happen to click on the file.

The infected Creative Zen Neeons all carry serial numbers in the 1230528000001 to 1230533001680 range.

If you have one of the compromised machines you should contact Creative about your Wullik.B-infected Zen Neeon.

Zen Neeon MP3 Player Infected with Windows Wullik Worm Virus

 Follow Anne on Twitter

 Twitter Explained in Plain English

 Friend Anne on Facebook

Previous Article « Hurricane Katrina Email Hoax Invokes Red Cross
Read Next Article » Free Credit Report Online

Read more:

»  New Skype Worm Threatens All Skype Windows Users

»  Koobface Facebook and MySpace Worm Infects Users with Trojan Disguised as codecsetup.exe

»  The Conficker Worm - What it Is, How to Know if You Have it, and How to Get Rid of It

»  How Do You Know if you Have the Conficker Worm? Use This Handy Chart!

For additional similar stories check out our archives on Around the World, Worms, iPods & MP3

NOTE: We never, ever, ever will recommend any product or service on this site that we have not regularly used ourselves and do not wholeheartedly believe in. That said, in some cases after being very pleased with a product or service, we may enter into a relationship with the provider of that product or service such that if someone purchases that product or service based on our recommendation, we may get a small payment. Such payments go towards the upkeep of the Internet Patrol.

 

2 Comments »

  1. Err, it only poses a risk if they click on it, not if it’s just connected.

    Comment by Bill — 9/5/2005 @ 5:38 pm

  2. so, if i were to buy a zen neeon, is there a chance some of the current neeons have this worm?

    Comment by Ignacio — 5/28/2006 @ 10:39 am

RSS feed for comments on this post.

Leave a comment

Warning! All comments which contain URLs and are clearly just spam to generate a link back to the URL will be deleted on sight. Don't bother wasting your time!

If you are going to include a URL in your comment,
please keep it under 25 characters in length,
or use TinyURL to shorten it before including it in your comment.

Line and paragraph breaks are automatic, your email address is never displayed.
HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

(required)

(required)


If you have not posted a comment here before, we apologize for having to ask you to enter the letters and numbers you see in the image above to validate your comment, but we are being attacked by thousands of comment form spams every day! You only need to do this once; once you have successfuly posted a comment here you will not be asked to do this again. Thank you for your understanding!

 
 This article first appeared on 9/2/2005
The Internet Patrol
Patrolling the Internet for You!