Home > General > Worm.sco.a


All rights reserved. © IDG Communications Nmap Security Scanner Intro Ref Guide Install Guide Download Changelog Book Docs Security Lists Nmap Announce Nmap Dev Bugtraq Full Disclosure Pen Test Basics More Test your internet connection If this is your first visit, be sure to check out the FAQ by clicking the link above. Sophos lists it as: W32/MyDoom-A Aliases Mimail.R, Novarg.A, Shimg, [email protected], W32/[email protected] More info is available on the usual sites. It was first sighted on January 26, 2004. navigate to this website

Flag Permalink This was helpful (0) Back to Spyware, Viruses, & Security forum 3 total posts Popular Forums icon Computer Help 51,912 discussions icon Computer Newbies 10,498 discussions icon Laptops 20,411 The McGraw-Hill Companies Inc. ^ "More Doom?". Mydoom was named by Craig Schmugar, an employee of computer security firm McAfee and one of the earliest discoverers of the worm. Thank you for helping us maintain CNET's great community.

We can't come part of the problem because we either don't want to change or are living in fear of outdated RFC's. Please check your system for viruses, or ask your system administrator to do so. Register Help Remember Me? I thought having 'doom' in the name would be appropriate."[5] Contents 1 Technical overview 2 Timeline 3 See also 4 References 5 External links Technical overview[edit] Mydoom is primarily transmitted via

  • anyone have any ideas on this ?
  • Click Start, point to ?Settings?, and then click ?Control Panel?.2.
  • Computer Associates International.
  • I am currently scanning the recipient computer for viruses just in case .
  • To: [email protected]???

Click the ?Troubleshooting? Action: failed Status: 5.7.1 Diagnostic-Code: smtp; 550 5.7.1 Message content rejected, id=15514-01 - VIRUS: Worm.SCO.A Last-Attempt-Date: Thu, 29 Jan 2004 08:57:36 +0100 (CET) ------------=_1075363056-15514-1 Content-Type: text/rfc822-headers Content-Disposition: inline Content-Transfer-Encoding: 7bit Content-Description: The time now is 01:02 AM. The System Properties dialog box appears.NOTE: If the System icon is not visible, click "View all Control Panel options" to display it.3.

they build a better mouse, we make a better trap. Once reported, our moderators will be notified and the post will be reviewed. SCO Group claimed it was the target of several distributed denial of service attacks in 2003 that were unrelated to computer viruses. 27 January: SCO Group offers a US $250,000 reward Generating an NDR in this case is not only useless, but actively detrimental to the performance and stability of the network.

Mention this ad and get $720 off any course! More then that there should be a check, in even non anti-virus software, where the software will check the sending domain against the sending MX to see if the address was Click Start.2. I ante another $0.02.

It's spreading pretty fast. Click on Apply, etc.To disable Windows Me System Restore:1. F-Secure Computer Virus Information Pages. All of our class sizes are guaranteed to be 10 students or less.

It also installs a backdoor for remote control, readies itself to DDoS SCO's website, and according to some (unsubstantiated, that I can tell) reports, it installs a keystroke logger. useful reference Please check your system for viruses, or ask your system administrator to do so. Later analyses were less conclusive as to the link between the two worms. Subject: Status Date: Thu, 29 Jan 2004 09:01:17 +0100 MIME-Version: 1.0 Content-Type: multipart/mixed; ¬†¬†¬†¬†boundary="----=_NextPart_000_0009_E6659BB9.6BAD63B0" X-Priority: 3 X-MSMail-Priority: Normal Message-Id: <[email protected]???> ------------=_1075363056-15514-1-- Esta mensaxe foi enviada √°s seguintes listas:cm-romaInformaci√≥n da lista |

Can I assume that the use of my son's email address is a spoof, or should I keep looking for an infection in this particular box which is the only one The first messages sent by Mydoom.B are identified at around 1400 UTC and also appear to originate from Russia. This is attributed to the comparatively low distribution of the Mydoom.B variant, the high load tolerance of Microsoft's web servers and precautions taken by the company. my review here Please refer to our CNET Forums policies for details.

Nortons has just completed a full scan without finding anything and I have all mail scanned on download too. by Grif Thomas Forum moderator / February 11, 2004 5:04 AM PST In reply to: worm.Sco.a ...this should help you get rid of the problem virus. (It would sure help us We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion Prevention, and many other technical hands on courses.

Delivery of the email was stopped!

As 1 February arrives in East Asia and Australia, SCO removes www.sco.com from the DNS around 1700 UTC on 31 January. (There is as yet no independent confirmation of www.sco.com in How fast is your internet? About CNET Privacy Policy Ad Choice Terms of Use Mobile User Agreement Help Center Mydoom From Wikipedia, the free encyclopedia Jump to: navigation, search Mydoom, also known as [email protected], Novarg, Mimail.R Cheers Billy 8-{) :| 27-01-2004,05:06 PM #2 Jim B Guest Re: What is "Worm.sco.a up to??

Wikipedia¬ģ is a registered trademark of the Wikimedia Foundation, Inc., a non-profit organization. New virus infects PCs, whacks SCO 27-01-2004,06:06 PM #6 Billy T Guest Re: What is "Worm.sco.a up to?? tab, and then click ?File System?.4. http://upxpress.net/general/worm-badtrans-b.php microsoft.com.

[email protected] [Norton] W32/[email protected] [McAfee], WORM_MIMAIL.R [Trend] 27-01-2004,05:10 PM #3 Billy T Guest Re: What is "Worm.sco.a up to?? All of our class sizes are guaranteed to be 10 students or less. For your reference, here are headers from your email: ------------------------- BEGIN HEADERS ----------------------------- From: [email protected] To: [email protected] Subject: TKSUQJZCIMPVH Date: Wed, 28 Jan 2004 22:32:01 +0200 MIME-Version: 1.0 Content-Type: multipart/mixed; boundary="----=_NextPart_000_0003_F4772286.299DE83B" Anyone have a clue of what this virus is?

Check "Turn off system restore" or "Turn off system restore on all drives". Cheers Billy 8-{) 27-01-2004,05:32 PM #4 Biggles View Profile View Forum Posts Private Message Hun Hunter Join Date May 1988 Location In the air Posts 2,732 Re: What is "Worm.sco.a up In the US, the FBI and the Secret Service begin investigations into the worm. 28 January: A second version of the worm is discovered two days after the initial attack. Sophos lists it as: W32/MyDoom-A Aliases Mimail.R, Novarg.A, Shimg, W32.Novarg.A_at_mm, W32/Mydoom_at_MM In summary it does the common "harvest e-mail addresses and remail myself" trick that we have seen so many times

We all agree that security is an evolution, a fluid process of forward progress and innovation. icon, and then click Properties.3. The spam dates back to the previous owner of the address who surfed not wisely but too well, straying into all sorts of nasty sites (hence the embargo on said-son using Check out Good Gear Guide's broadband speed test -- PCWorld2011 -- Default Mobile Style Contact Us PC World Forums Archive Web Hosting Privacy Statement Top All times are GMT +13.

Its payload, akin to one of Mydoom.B's, is a denial-of-service attack against Microsoft.[9] 12 February: Mydoom.A is programmed to stop spreading. Microsoft offers US $250,000 reward for information leading to the arrest of the creator of Mydoom.B. 1 February 2004: An estimated one million computers around the world infected with Mydoom begin Archived from the original on February 4, 2004. Discussions cover how to detect, fix, and remove viruses, spyware, adware, malware, and other vulnerabilities on Windows, Mac OS X, and Linux.Real-Time ActivityMy Tracked DiscussionsFAQsPoliciesModerators General discussion worm.Sco.a by errolla7 /

It usually has only 4 or 5 items of spam in there as he doesn't actually have access to it from his computer and never has. Okay, I'm light on virus experience, not having had an infection ever (crossed fingers as I type this), though I have intercepted about five prior to infection over the last seven A denial-of-service attack against the website of the controversial company SCO Group, timed to commence 1 February 2004. By summertime in forum PressF1 Replies: 8 Last Post: 03-07-2004, 02:01 AM Worm By leshibbard in forum PressF1 Replies: 4 Last Post: 06-04-2004, 02:05 PM the worm By starfish in forum

Speculative early coverage held that the sole purpose of the worm was to perpetrate a distributed denial-of-service attack against SCO Group. 25 percent of Mydoom.A-infected hosts targeted www.sco.com with a flood BBC News.