Closed Thread
 
Thread Tools
Old 28-01-2004, 05:38 AM   #1   [permalink]
eva2000
Administrator
 
eva2000's Avatar
 
Join Date: 23 Jun 2000
Location: Brisbane, Australia
Posts: 12,408
Exclamation Novarg Virus Alert - category 4 worm!

Just heads up guys about this nasty virus which is spreading pretty rapidly

READ
http://securityresponse.symantec.com...varg.a@mm.html

Quote:
W32.Novarg.A@mm is a mass-mailing worm that arrives as an attachment with the file extension .bat, .cmd, .exe, .pif, .scr, or .zip.

When a computer is infected, the worm will set up a backdoor into the system by opening TCP ports 3127 through 3198, which can potentially allow an attacker to connect to the computer and use it as a proxy to gain access to its network resources.

In addition, the backdoor can download and execute arbitrary files.

The worm will perform a Denial of Service (DoS) starting on February 1, 2004. It also has a trigger date to stop spreading on February 12, 2004.

Also known as:
W32/Mydoom@MM [McAfee], WORM_MIMAIL.R [Trend], Win32.Mydoom.A [Computer Associates], W32/Mydoom-A [Sophos], I-Worm.Novarg [Kaspersky]

Infection Length: 22,528 bytes, variable file size for a .zip attachment

Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP

Systems Not Affected: DOS, Linux, Macintosh, OS/2, UNIX, Windows 3.x

Quote:
The email will have the following characteristics:

From: May be a spoofed from address

Subject:
(one of the following)
  • test
  • hi
  • hello
  • Mail Delivery System
  • Mail Transaction Failed
  • Server Report
  • Status
  • Error

Message:
(one of the following)
  • Mail transaction failed. Partial message is available.
  • The message contains Unicode characters and has been sent as a binary attachment.
  • The message cannot be represented in 7-bit ASCII encoding and has been sent as a binary attachment.

Attachment:
(one of the following)
  • document
  • readme
  • doc
  • text
  • file
  • data
  • test
  • message
  • body
Update your anti-virus software!

.
__________________
be afraid... Admin cap is back... !
eva2000 is offline  
Old 28-01-2004, 07:26 PM   #2   [permalink]
Atomic
Senior ---------: V.I.P.
 
Atomic's Avatar
 
Join Date: 25 Jun 2000
Location: Melbourne, Australia
Posts: 10,329
Send a message via ICQ to Atomic Send a message via MSN to Atomic
people who are stupid enough to open up attachments like that from complete strangers should be all shot and mamed horribly in my opinion. From someone/thing that you have no idea about, spam or virus. Either way you don't want it so delete it. If it was from someone you know then ask them to confirm it or scan it first.

Quote:
The message contains Unicode characters and has been sent as a binary attachment.
The message cannot be represented in 7-bit ASCII encoding and has been sent as a binary attachment
Like i'd believe that and want to run a trojan. But then again that's just me and some people really are just stupid. Also far enough about a warning too
__________________

This sig is best viewed with a computer and a monitor
Last edited 11-10-2011, Atomic
Atomic is offline  
Closed Thread

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
[Virus Alert] W32.Klez worm virus! eva2000 General Non-Anime Discussion Archive 2000-2003 4 04-06-2002 09:45 AM
Alert Oct 10, 2001 - WTC.EXE virus eva2000 General Non-Anime Discussion Archive 2000-2003 4 21-10-2001 10:03 PM
Nimda Worm virus Alert! eva2000 General Non-Anime Discussion Archive 2000-2003 16 11-10-2001 04:24 AM


New To Site? Need Help?

All times are GMT -4. The time now is 08:49 PM.


Powered by vBulletin® Version 3.8.10
Copyright ©2000 - 2017, vBulletin Solutions, Inc.