Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old July 8th, 2002, 08:35 AM
FanJ
 
Posts: n/a
Default W32/Nahata-F

Name: W32/Nahata-F
Aliases: I-Worm.Nahata.e
Type: Win32 worm
Date: 8 July 2002


At the time of writing Sophos has received no reports from users
affected by this worm. However, we have issued this advisory
following enquiries to our support department from customers.

Description
W32/Nahata-F is an intended worm that tries to spread via email, mIRC and Pirch. It drops itself into the root folder of drive C:. It also attempts to drop the file C:\info.vbs.

Info.vbs should send the worm to email addresses found in the Outlook address book and overwrite script.ini and events.ini when the computer is restarted. However, it does not work properly. The file info.vbs is already detected by Sophos Anti-Virus as VBS/Cuartel-A.



More information about W32/Nahata-F can be found at
http://www.sophos.com/virusinfo/analyses/w32nahataf.html

 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 10:48 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums