Author |
Topic: W32/Zafi.d@MM (Read 261 times) |
|
The mad viking
CH.com Alumnus New Board Hall of Famer
Always Look on The Bright Side of Life
Gender:
Posts: 3135
|
|
W32/Zafi.d@MM
« on: Dec 15th, 2004, 3:19pm » |
Quote Modify
|
Offering a fake holiday greeting, W32/Zafi.d@MM is a Medium Risk mass-mailing worm that arrives as an email attachment. When run, the worm displays a fake error message (Error in packed file!), infects the host computer and emails itself to stolen email addresses using the infected computer's Internet connection. Like previous variants, the worm sends itself in different languages depending on the recipient's address. For example, a .COM mail address receives an English message, a .DE mail address receives German. Note: To fortify your anti-virus defense against threats like W32/Zafi.d@MM that need Internet access to spread, we recommend installing McAfee Personal Firewall Plus. What should I look for? FROM: Varies (forged addresses taken from infected system) SUBJECT: Example: Fw: Merry Christmas! BODY: Example: Happy Hollydays! ATTACHMENT: Example: postcard.php8583.zip How do I know if I've been infected? Fake error message displayed. Alerts from a desktop firewall (if installed) that a new application is asking for Internet access. TCP port 8181 open on the infected system. How do I find out more? View details about W32/Zafi.d@MM here. Svenn
|
|
IP Logged |
Always Look on The Bright Side of Life
|
|
|
firebrix
New Board Hall of Famer
I must never weaken.
Gender:
Posts: 683
|
|
Re: W32/Zafi.d@MM
« Reply #2 on: Dec 15th, 2004, 4:47pm » |
Quote Modify
|
Thank you Svenn! Keeping us safe again! Last Xmas our friend got a brand new computer. Within one hour of using it, it had been so badly infected it wouldn't boot. This time of year is often fraught with dangers and maybe the AV people don't have time to update as regularly as usual? Be careful out there. firebrix
|
|
IP Logged |
"All that it takes for the triumph of evil is for good men to do nothing." Edmund Burke
|
|
|
|
|
|