Visualizza messaggio singolo
Vecchio 20-02-2004, 18.38.34   #1
Giorgius
Gold Member
Top Poster
 
L'avatar di Giorgius
 
Registrato: 26-08-2000
Loc.: tokyo city
Messaggi: 8.374
Giorgius promette bene
W32.MyDoom.F - Allerta 4 - Update

Questa variante di Mydoom, attacca tra il 17 e il 22 di ogni mese, alcuni Server Microsoft e RIAA.

Screenshot:



Aliases:
W32/Mydoom.F.worm (Panda Software), W32/MyDoom.F@mm (PerAntivirus), Win32/Mydoom.F (Enciclopedia Virus (Ontinent)), W32/Mydoom.f@MM (McAfee), W32.Mydoom.F@mm (Symantec), W32/MyDoom-F (Sophos), WORM_MYDOOM.F (Trend Micro)

Effetti:
W32.Mydoom.F@mm is a mass-mailing worm that arrives as an attachment with the file extension .bat, .com .cmd, .exe, .pif, .scr, or .zip. The email may have a spoofed sender's email address.

When a computer is infected, the worm sets up a backdoor into the system by opening TCP ports 1080, which can potentially allow an attacker to connect to the computer and use it as a proxy to gain access to its network resources.

In addition, the backdoor can download and execute arbitrary files.

The computer infected by the worm will perform Denial of Service (DoS) against www.microsoft.com and www.riaa.com if the machine's local system date is between 17th and 22nd of any month.

Info:
http://www.alerta-antivirus.es/virus...e1fa5e1d150c21
http://www.symantec.com/avcenter/ven...doom.f@mm.html
http://www.pandasoftware.es/virus_in...&idvirus=44913
http://www.enciclopediavirus.com/vir...rus.php?id=735
http://us.mcafee.com/virusInfo/defau...virus_k=101038
http://esp.sophos.com/virusinfo/anal...32mydoomf.html
http://us.mcafee.com/virusInfo/defau...virus_k=101038


Aggiornamento AntiVirus al 21/02/04 (Y)

Ultima modifica di Giorgius : 25-02-2004 alle ore 17.42.09
Giorgius non è collegato   Rispondi citando