Tuesday, 27. January 2004
W32.Novarg.A@mm

W32.Novarg.A@mm is a mass-mailing worm. The worm will arrive as an attachment with a file extension of .bat, .cmd, .exe, .pif, .scr, or .zip.

When the machine gets infected, the worm will set up a backdoor into the system by opening TCP ports 3127 thru 3198. This will potentially allow a hacker to connect to the machine and utilize it as a proxy to gain access to it's network resources. In addition, the backdoor has the ability to download and execute arbitrary files.

The worm will perform a DoS starting on February 1, 2004. On February 12, 2004 the worm has a trigger date to stop spreading.

http://securityresponse.symantec.com/avcenter/venc/data/w32.novarg.a@mm.html

Symantec class 4 worm...

... Comment

Also called Mydoom. It's ridiculously prevalent on the level of SoBig. I've received about 20 copies of it alone today...

The DDOS is directed straight at SCO...

... Link


... Comment

Online for 8350 days
Last modified: 2/29/20, 7:15 PM
Status
Youre not logged in ... Login
Menu
... Home
... Tags

Search
Calendar
July 2025
SunMonTueWedThuFriSat
12345
6789101112
13141516171819
20212223242526
2728293031
November
Recent updates
lets fix this later =)

RSS feed

Made with Antville
Helma Object Publisher