Jump to content
RemedySpot.com

Backdoor Worm

Rate this topic


Guest guest

Recommended Posts

The following virus tried to get into my system when I began

downloading my e-mail messages this morning. I believe the

only way they could have gotten my e-mail address was from

yahoo.... This is my personal e-mail address and I don't give it

out except to friends and these yahoo groups....

So please be careful out-there. You can see more info on it at

www.norton.com.

kathy

WORM INFO:

W32.Novarg.A@mm is a mass-mailing worm. The worm will

arrive as an attachment with a file extension of .bat, .cmd, .exe,

..pif, .scr, or .zip.

When the machine gets infected, the worm will set up a

backdoor into the system by opening TCP ports 3127 thru

3198. This will potentially allow a hacker to connect to the

machine and utilize it as a proxy to gain access to it's network

resources. In addition, the backdoor has the ability to

download and execute arbitrary files.

The worm will perform a DoS starting on February 1, 2004.

On February 12, 2004 the worm has a trigger date to stop

spreading.

Subject:

(The subject will be one of the following)

test

hi

hello

Mail Delivery System

Mail Transaction Failed

Server Report

Status

Error

Link to comment
Share on other sites

Join the conversation

You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...