|
|
Worm.Mytob.m0use Worm Information
| Name: |
Worm.Mytob.m0use |
| Category: |
Worm |
| Alias: |
- Alias: Pokey, W32/HLLW.32747 |
| Advice: |
Remove |
| Risk: |
High Risk
High risk threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction. May open up communication ports, use polymorphic tactics, stealth installations, and/or anti-spy counter measures. May use a security flaw in the operating system to gain access to your computer. |
| Description:
|
Worm.Mytob.m0use is a variant of the Mytob/Mydoom family.
This worm can harvest email addresses from the infected computer and sends infected emails forging the user's email address. It sets itself to run when Windows starts and creates entries in the registry containing m0use.exe.
It lowers system security and can block access to anti-virus updates and security sites by altering the hosts file.
It is also a backdoor which allows its creator to access and control the infected computer by connecting to an IRC (Internet Relay Chat) server.
|
| Signatures:
|
process: m0use.exe: MD5 Hash: caef9bac137c033af9c.. |
| Type: |
Worm - A worm is program that propagates by attacking other computers and copying itself to them. Worms may replace files, but do not insert themselves into files (as viruses do). |
Top Worm Visited Pages:
Wukill.mstray - Alias: Win32/HLLW.Wukill - 295 visits
Rbot - Alias: Backdoor.Rbot.Gen - 276 visits
SDBot - Alias: Wootbot.gen, Wootbot, Donk, spybot, Agobot - 229 visits
Trojan.Downloader.winstall - 182 visits
Worm.Brit.e - Alias: VBS/Chick.e@M virus - 89 visits
Worm.P2P.SpyBot.gen - 56 visits
Gaobot - 45 visits
Win32/Darby.O - 42 visits
Worm.Trilissa.e - 42 visits
JS.Lame - Alias: HTML.Lame - 40 visits
Random Worm Pages:
ADM Worm v1
Worm.P2P.Herpes
WootBot.winlogons
HomePage Mail
VBS.Vbswg.coucou2 - Alias: Adn733r Worm, I-Worm.Lee-Based
Worm.Rxbot
Win/Lizard.1967 - Alias: W95/Lizard
Win32 NetBus Worm - Alias: Backdoor.Pipe
Klez Worm - Alias: I-Worm.Klez.h, W32/Klez
Worm.Pikachu - Alias: Pokey, W32/HLLW.32747
|
|