SiteLibrary

Link Collectors Community

 



W32/Mydoom@MM Worm
Published on 02/11/04 at 11:23:05 GMT by ahecq
 
VirusesW32/Mydoom@MM -- High-Outbreak Risk -- mass-mailing worm

steals email addresses
random email addresses

opens a port on an infected PC, allowing a
remote hacker to gain control of the system.

attachment types [.exe, .pif, .cmd, .scr]
attachment size is 22,528 bytes.

Possible messages:
The message cannot be represented in 7-bit ASCII encoding and has been sent as a binary attachment.
The message contains Unicode characters and has been sent as a binary attachment.
Mail transaction failed. Partial message is available.

Source: McAfee Security
Computer Virus Software and Internet Security For Your PC

 Printer Friendly Version - W32/Mydoom@MM Worm  Log in to use this feature   593 reads
All Articles by ahecq

  Comments on this article:
 W32/Mydoom@MM Worm | 4 comments | Sign Up

The comments are owned by the poster. We aren't responsible for the content.
Only registered members may comment on articles.

 W32.Mydoom@mm Removal Tool
 Written on 02/11/04 at 11:28:47 GMT by ahecq
Source: Symantec Security Response - W32.Mydoom@mm Removal Tool

 opportunistic worms...
 Written on 02/11/04 at 19:25:02 GMT by ppp
Source: New viruses feed on MyDoom infections | CNET News.com
"New viruses feed on MyDoom infections By Robert Lemos  Staff Writer, CNET News.com
  Two worms that take advantage of computers whose security has already been compromised started spreading on Monday, antivirus software companies warned. The two opportunistic programs--dubbed Doomjuice and Deadhat--threatened only those users still infected with a version of the MyDoom virus, " ...

 McAfee Security
 Written on 02/12/04 at 08:22:13 GMT by jotfish
Source:  W32/Mydoom@MM Virus Profile
"opens a connection on TCP port 3127 (if that fails it opens next available port up to port 3198). "

Execute
 netstat -a -n -p TCP
can show the ports open.

 Doomjuice
 Written on 02/12/04 at 19:42:43 GMT by ahecq
Source: MyDoom author may be covering tracks | CNET News.com
"By Robert Lemos -- A worm that started spreading on Sunday places the source code for the original MyDoom virus on victims' hard drives, ...
The worm, Doomjuice, ... among other actions, places several copies of the source code for MyDoom.A on a victim's computer. ... "



Who's On


EST Nov. 2002 ~ Copyright © 2002-2008 ~ SiteLibrary


Member's Banner Ad
Member's Banner Ad - Click to Visit JoeAnt
View All Banners



This site was made with WebAPP Web Automated Perl Portal system v0.9.9.9 RC4 , a web portal system written in Perl.
All trademarks and copyrights on this page are owned by their respective owners.
Comments are owned by the Poster.

XML v1.0