Diễn Đàn » Hỏi Ðáp Tin Học

New Virus Warning ( Sobig.f)

6 trả lời, 676 lượt xem — Trang 1 / 1
<Bài viết đã được chỉnh sửa lúc &lt; Edited by: <b>viviy2k</b> -- <b>8/22/2003 1:16:23 AM </b> &gt;>
New Virus Warning ( Sobig.f)

W32.Sobig.F@mm
Discovered on: August 18, 2003
Last Updated on: August 21, 2003 01:26:18 PM


Due to the number of submissions received from customers, Symantec Security Response has upgraded this threat to a Category 4 from a Category 3 threat as of August 21, 2003.

W32.Sobig.F@mm is a mass-mailing, network-aware worm that sends itself to all the email addresses it finds in the files that have the following extensions:


  • .dbx
  • .eml
  • .hlp
  • .htm
  • .html
  • .mht
  • .wab
  • .txt

The worm uses its own SMTP engine to propagate and attempts to create a copy of itself on accessible network shares, but fails due to bugs in the code.


Email routine details
The email message has the following characteristics:

From: Spoofed address (which means that the sender in the " From" field is most likely not the real sender). The worm may also use the address admin@internet.com as the sender.

NOTES:
The spoofed addresses and the Send To addresses are both taken from the files found on the computer. Also, the worm may use the settings of the infected computer' s settings to check for an SMTP server to contact.
The choice of the internet.com domain appears to be arbitrary and does not have any connection to the actual domain or its parent company.

Subject:

    Re: Details
    Re: Approved
    Re: Re: My details
    Re: Thank you!
    Re: That movie
    Re: Wicked screensaver
    Re: Your application

Thank you!
Your details

Body:
See the attached file for details
Please see the attached file for details.

Attachment:

    your_document.pif
    document_all.pif
    thank_you.pif
    your_details.pif
    details.pif
    document_9446.pif
    application.pif
    wicked_scr.scr
    movie0045.pif


NOTES:
The worm de-activates on September 10, 2003. The last day on which the worm will spread is September 9, 2003.
W32.Sobig.F@mm uses a technique known as " email spoofing," by which the worm randomly selects an address it finds on an infected computer. For more information on email spoofing, see the " Technical Details" section below
Đăng nhập để trả lời
0
<Bài viết đã được chỉnh sửa lúc &lt; Edited by: <b>viviy2k</b> -- <b>8/21/2003 11:05:43 PM </b> &gt;>
Một loại email virus đã làm tê liệt hàng chục ngàn các máy tính cá nhân và công nghiệp.

Có tên là Sobig.f.

Nó tấn công máy tính dưới dạng email được gơi tới từ những người bạn biết. Hãy cẩn thân khi mở mail có kèm attachment hay file đính kèm. Loại Virus này chỉ khoá màn hình computer chứ không phá huỷ các tài liệu

[url=" http://securityresponse.symantec.com/avcenter/venc/data/w32.sobig.f@mm.removal.tool.html" ] Virus Remover Tool [/url] Click here
Đăng nhập để trả lời
0
Virus Snarls Email Traffic Worldwide
Manuel Ramos



At Golden Gate Perks, a cyber-cafe in San Francisco' s Financial District, the staff was busy Thursday trying to block the latest -- and some say the nastiest -- online infection ever.

The " Sobig" virus was the fastest outbreak yet on the Internet. Some companies reported receiving 30,000 Sobig emails per hour.

Home computers have gone black and cyber-cafes around the world were shut down. So at Golden Gate Perks, they were downloading a protective patch.

" It appears to be moving really fast, starting from the East Coast," said employee Jason Modzeleski.

Sobig is such a big problem because it appears to be an email from someone you know. If you open the attachment, the infection gets into your computer address book and spreads the virus from there. Your computer becomes a spam machine, receiving and sending out messages.

The virus does not physically damage computers. But it was costing companies millions in lost business hours spent clearing away the email. So at Golden Gate Perk, the patches were in place.

" We have pretty much every anti-virus software you can put in," said Modzeleski. " But you can' t protect yourself 100%."

» 08-21-2003
Đăng nhập để trả lời
0
Thanks for Warning sis
Đăng nhập để trả lời
0
Vậy Soft nào quét Virus này được vậy
Một ngàn người yêu em trong đó có tôi
Còn mười người yêu em trong đó còn tôi
Còn hai người yêu em...
Người kia rồi sẽ ra đi. Tôi thì ở lại !....

Lỳ cỡ đó!!!

Tình Thân!
Đăng nhập để trả lời
0
Viviy2k co card vnthuquan dep wa co the chi cho minh tim mot cai duoc ko?
Một ngàn người yêu em trong đó có tôi
Còn mười người yêu em trong đó còn tôi
Còn hai người yêu em...
Người kia rồi sẽ ra đi. Tôi thì ở lại !....

Lỳ cỡ đó!!!

Tình Thân!
Đăng nhập để trả lời
0
KHUNG BO oi ,nghe ten thoi da biet la ban se khong duoc cap card dau ,de Chi nhan gium cho nhe
Đăng nhập để trả lời
0