Perfekt gefälschte M$-Mail: W32.Swen.A@mm

Devilfrank

Sehr aktiv
W32.Swen.A@mm is a mass-mailing worm that also attempts to spread through file-sharing networks, such as KaZaA, and IRC, and will attempt to kill antivirus and personal firewall programs running on the computer.

The worm arrives as an email attachment. The email subject, body, and From: address can vary. Some examples claim to be patches for Microsoft Internet Explorer, or delivery failure notices from qmail.

W32.Swen.A@mm is similar to W32.Gibe.B@mm in function, and is written in C++.


Also Known As: Swen [F-Secure], W32/Swen@mm [McAfee], W32/Gibe-F [Sophos], Worm Swen.A


Infection Length: 106496



Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP
Systems Not Affected: DOS, Linux, Macintosh, Microsoft IIS, OS/2, UNIX, Windows 3.x

http://securityresponse.symantec.com/avcenter/venc/data/[email protected]
 
Wie ich es schon befürchtet hatte, fallen offensichtlich eine Menge Leute darauf rein.
Symantec löst Virus Alert Category 3 aus und schiebt ein extra LiveUpdate.
 
Zurück
Oben