Warning: mysql_num_rows(): supplied argument is not a valid MySQL result resource in /home/critorg/public_html/templates/Bright Light (Fixed)/Panels/ViewArticlePanel.php on line 97
Latest Mydoom Mutant on the Loose
logo
header


    LOGIN

USER
 
PASS
 
   
Search


Advanced Search
Links
 »  Home  »  Anti Virus  »  Latest Mydoom Mutant on the Loose
Latest Mydoom Mutant on the Loose
By Crit [dot] Org | Published  02/20/2005 | Anti Virus | Unrated
Latest Mydoom Mutant on the Loose

Security experts have raised the risk assessment to medium on the recently discovered Mydoom.bb@MM worm, also known as Mydoom.bb, after receiving reports that the infection is spreading in the wild.

According to McAfee's Avert antivirus team, more than 50 reports of the virus being stopped or infecting users from the field have been recorded. Most of these reports have arrived from the US, though Avert has also received reports from Australia and the UK.

Mydoom.bb is similar to previous variants with a mass-mailing worm constructing messages using its own SMTP engine. It contains a peer-to-peer propagation routine and may be a .exe file. In common with other mutants it also downloads the BackDoor-CEB.f Trojan and spoofs the 'from' address.

Users are advised to be "very wary" and should most likely delete any email containing the following headers:

Delivered
Hello
Hi
Error
Status
Test
Report
Delivery failed
Message could not be delivered
Mail System Error - Returned Mail
Delivery reports about your e-mail
Returned mail: see transcript for details
Returned mail: Data format error

The virus constructs messages from pools of strings it carries in its body. After being executed, Mydoom.bb copies itself into the Windows System directory, and the worm installs itself as JAVA.EXE in the directory.
It will show Windows Explorer listening on TCP Port 1034, the port on which the web server runs.

How would you rate the quality of this article?
1 2 3 4 5
Poor Excellent
Tell us why you rated this way (optional):

Send to Author Post on Site

Comments
 

Popular Articles
  1. Symantec Adds Spyware Removal And Repair
  2. Spyware, Adware Are Hot Topics At RSA Security Conference
  3. Microsoft Windows AntiSpyware
  4. Financial Sector Still Top Targets For Phishing Scams
  5. Symantec And McAfee Launch Enterprise Anti-Spyware Tools
No popular articles found.
Popular Authors
  1. Crit [dot] Org
No popular authors found.


Copyright 2008 Crit.org All rights reserved.
Email: webmaster@crit.org | Privacy Policy