|
Subscribe
to Virus Alert |
W32/Mydoom.U Worm
W32/Mydoom.U is an email worm. This worm
is a variant of W32/Mydoom Worm.
The worm will infect Windows systems. The worm spreads through email
and attempts to download a backdoor. The worm arrives with any one of the following
subject: The body of the infected mail will be a combination of Part A and Part B: Part A: <empty> Part B: Norman AntiVirus - www.norman.com
The name of the infected attachment will be any one of the following; doc The extension of the infected attachment will be any one of the following; pif Upon execution, the worm copies itself as WINSPF32.EXE on to the Windows System32 folder. It also alters the windows registry at the following location to load itself during next startup; HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run To propagate itself, the worm scans the following extensions and collects the available email addresses from the infected system; eml The worm attempts to download a backdoor from any of these websites;
http://www.ach.ch/ This worm first appeared on 09th September,
2004. This Worm is also known as WORM_MYDOOM.U, W32/Mydoom.u@MM, Mydoom.U, W32/Mydoom.U.worm. |
Proland Software is the developer of Protector Plus range of antivirus software packages. Protector Plus 2007 is available for Windows Vista, Windows 95/98/Me, Windows XP, Windows NT/2000/2003 servers and workstations, MS-Exchange 2000/2003, MS-DOS and NetWare servers.
![]() |
|
Protector Plus range of antivirus products
offer on-line virus detection and removal. All the packages have the ability
to detect and isolate all types of viruses, trojans, worms and other types
of malware.
These products are updated on a continuous basis and the latest upgrades
for all the platforms are made available for downloading from this site.
|
You can download the 30 day evaluation
copy of
Protector Plus antivirus software free of cost for these platforms:
![]()
![]()
![]()
![]()
![]()
![]()
![]()
Copyright ©
2007 Proland Sofrware. All rights reserved.