Yet Another Bulletin Board

Welcome, Guest. Please Login or Register.
Nov 23rd, 2024, 11:11pm

Home Home Help Help Search Search Members Members Member Map Member Map Login Login Register Register
Clusterheadaches.com Message Board « SECURITY ALERT!!!!!!!!!!!!! »


   Clusterheadaches.com Message Board
   New Message Board Archives
   2002 Posts
(Moderator: DJ)
   SECURITY ALERT!!!!!!!!!!!!!
« Previous topic | Next topic »
Pages: 1  Reply Reply Notify of replies Notify of replies Send Topic Send Topic Print Print
   Author  Topic: SECURITY ALERT!!!!!!!!!!!!!  (Read 214 times)
The  mad viking
CH.com Alumnus
New Board Hall of Famer
Norway 
*****




Always Look on The Bright Side of Life

  svennthorn2003@yahoo.no  
WWW Email

Gender: male
Posts: 3135
SECURITY ALERT!!!!!!!!!!!!!
« on: Oct 1st, 2002, 3:12pm »
Quote Quote Modify Modify

SECURITY ALERT
***************************************************
 
NYHETER
 
W32.BUGBEAR@MM
Due to an increased rate of submissions, Symantec Security Response has upgraded W32.Bugbear@mm to a Category 3 threat.
 
W32.Bugbear@mm is a mass-mailing worm. It can also spread through Network shares. It has backdoor capabilities. The worm will also attempt to terminate the processes of various antivirus and firewall programs.
 
The subject, message and attachment name of the email appears to be taken from the infected system. The attachment file has two extensions, the second extension is .scr, .pif, or .exe.
 
For more information please see http://securityresponse.symantec.com/avcenter/venc/data/w32.bugbear@mm.h tml
 
 
 
 
W32.OPASERV.WORM
Due to an increased rate of submissions, Symantec Security Response has upgraded W32.Opaserv.Worm to a Category 3 threat.
 
W32.Opaserv.Worm is a network-aware worm which attempts to replicate across open shares. The worm specifically targets \\machinename\c shares. This worm also attempts to download updates from www.opasoft.com, although the site may have already been shut down. Indicators of infection include:  
 
The existence of scrsin.dat and scrsout.dat in the root directory of the c: drive indicating a local infection (worm was executed on the local machine) The existence of tmp.ini in the root directory of the c: drive indicating a remote infection (infected by a remote host) HKLM\Software\Microsoft\Windows\Current Version\Run contains a string value named ScrSvr or ScrSvrOld which is set to "c:\tmp.ini"
 
For additional information, please see http://securityresponse.symantec.com/avcenter/venc/data/w32.opaserv.worm .html
 
 
 
 
 
 
******************************************** www.symantec.no
 
Got this message from Symantec by e-mail 5 minutes ago
 
Svenn
« Last Edit: Oct 1st, 2002, 3:14pm by The  mad viking » IP Logged

Always Look on The Bright Side of Life
Charlie
CH.com Alumnus
New Board Hall of Famer
USA 
*****




Happy to be here

135447360 135447360   mondocharlie   mondocharlie
Email

Gender: male
Posts: 14968
Re: SECURITY ALERT!!!!!!!!!!!!!
« Reply #1 on: Oct 1st, 2002, 5:58pm »
Quote Quote Modify Modify

Thanks Svenn:
 
Got one I think is a fraud that asked be to insert a "fix" in my files. Somehow that seemed not a good idea. I found it listed as fraudulent at Symantic.  
 
Man, sure you're not posting in Norwegian?  whew
 
Charlie
IP Logged

There is nothing more satisfying than being shot at without result---Winston Churchill
The  mad viking
CH.com Alumnus
New Board Hall of Famer
Norway 
*****




Always Look on The Bright Side of Life

  svennthorn2003@yahoo.no  
WWW Email

Gender: male
Posts: 3135
Re: SECURITY ALERT!!!!!!!!!!!!!
« Reply #2 on: Oct 4th, 2002, 4:10am »
Quote Quote Modify Modify

W32.Bugbear@mm    
Discovered on: September 30, 2002  
Last Updated on: October 3, 2002 05:13:22 PM PDT  
 
 
     
 
     
 
 
NOTE: Due to an increased rate of submissions, Symantec Security Response has upgraded this threat from a Category 3 to a Category 4 as of October 2, 2002.  
 
W32.Bugbear@mm    
Discovered on: September 30, 2002  
Last Updated on: October 3, 2002 05:13:22 PM PDT  
http://securityresponse.symantec.com/avcenter/venc/data/w32.bugbear@mm.h tml
 
     
 
     
 
 
IP Logged

Always Look on The Bright Side of Life
Ree
New Board Hall of Famer
USA 
*****




2008's my year to shine~SUN IS OUT!!!YAY

64720087 64720087   Reespirit   Ree16Angel
WWW Email

Gender: female
Posts: 5236
Re: SECURITY ALERT!!!!!!!!!!!!!
« Reply #3 on: Oct 4th, 2002, 7:16am »
Quote Quote Modify Modify

thanks Svenn... and have a great PF day... ree
IP Logged

Proud Mom to US ARMY Kiowa OH58 PILOT~CWO2 SCOTT Hawaii, & USMC Vet~Now POLICE OFFICER SEAN, Citizen of the Month~ Breezy~ Nana 4 Matt/Mike&Aya, MIL To Shino Wife to Dave HI BILL!http://www.myspace.com/dungareespockethttp://www.prohawaiian.com
The  mad viking
CH.com Alumnus
New Board Hall of Famer
Norway 
*****




Always Look on The Bright Side of Life

  svennthorn2003@yahoo.no  
WWW Email

Gender: male
Posts: 3135
Re: SECURITY ALERT!!!!!!!!!!!!!
« Reply #4 on: Oct 5th, 2002, 4:18am »
Quote Quote Modify Modify

 
 
W32.Bugbear@mm Removal Tool
 
http://securityresponse.symantec.com/avcenter/venc/data/w32.bugbear@mm.r emoval.tool.html
 
Here is something that might help those who are infected
IP Logged

Always Look on The Bright Side of Life
Pages: 1  Reply Reply Notify of replies Notify of replies Send Topic Send Topic Print Print

« Previous topic | Next topic »


Clusterheadaches.com Message Board » Powered by YaBB 1 Gold - SP 1.3.1!
YaBB © 2000-2003. All Rights Reserved.


©1998-2010 Web Vision Enterprises All rights reserved. All information on this site is protected by international copyright laws. You may not re-distribute any information from this site without written permission from Web Vision Enterprises and the webmaster of this site. Violators will be prosecuted.
You may view our privacy policy and financial disclosure statement here

test rss