Tuesday, 27. January 2004
W32.Novarg.A@mm

W32.Novarg.A@mm is a mass-mailing worm. The worm will arrive as an attachment with a file extension of .bat, .cmd, .exe, .pif, .scr, or .zip.

When the machine gets infected, the worm will set up a backdoor into the system by opening TCP ports 3127 thru 3198. This will potentially allow a hacker to connect to the machine and utilize it as a proxy to gain access to it's network resources. In addition, the backdoor has the ability to download and execute arbitrary files.

The worm will perform a DoS starting on February 1, 2004. On February 12, 2004 the worm has a trigger date to stop spreading.

http://securityresponse.symantec.com/avcenter/venc/data/w32.novarg.a@mm.html

Symantec class 4 worm...

... Comment

Also called Mydoom. It's ridiculously prevalent on the level of SoBig. I've received about 20 copies of it alone today...

The DDOS is directed straight at SCO...

... Link


... Comment

Online for 8117 days
Last modified: 2/29/20, 7:15 PM
Status
Youre not logged in ... Login
Menu
... Home
... Tags

Search
Calendar
November 2024
SunMonTueWedThuFriSat
12
3456789
10111213141516
17181920212223
24252627282930
November
Recent updates
lets fix this later =)

RSS feed

Made with Antville
Helma Object Publisher