Welcome Guest ( Log In | Register )



 
Reply to this topicStart new topic
> Worm Alert - W32.zotob.a, new worm to hit Windows PCs
sparx
post Aug 16 2005, 05:47 AM
Post #1


Premium Member
Group Icon

Group: Members
Posts: 243
Joined: 20-January 05
From: Bombay, INDIA
Member No.: 2,231



A new worm has been detected by multiple antivirus and security specialists. It's called ZOTOB and is exploiting security holes that have been earlier highlighted in Microsoft Security Bulletin MS05-039.

The worm affects Win2000 systems and newer. Win 98, ME etc. are not currently thought to be at risk although, one must always keep the holes plugged.

Details regarding what it does exactly and removal instructions can be found at Symantec's site and also at Microsoft's ZOTOB Advisory page

The hole allowing Zotob to infect and spread can be fixed by installing MS Security Update 899588

Keep your antivirus up to date as well. Good Luck!
Go to the top of the page
 
+Quote Post
Jeigh
post Aug 16 2005, 01:05 PM
Post #2


Whitest Black Mage
Group Icon

Group: [MODERATOR]
Posts: 1,323
Joined: 20-May 05
From: NB, Canada
Member No.: 5,281



Yea I heard about that, my boss has us reworking login scripts to patch up machines here (I'm working at a tech support place for the summer) but I'm hoping it doesn't get too bad. Big virus/worm outbreaks == annoying *****y people yelling at us all day sad.gif
Go to the top of the page
 
+Quote Post
unimatrix
post Aug 17 2005, 07:32 AM
Post #3


Premium Member
Group Icon

Group: Members
Posts: 493
Joined: 15-August 05
Member No.: 7,873



Days like today I am glad we run Macs.

We had CNN on and they were going on about this for at least an hour. Wolf Blitzer trying to ad lib about technology was actually kind of sad and pathetic. It must of really been a slow news day.
Go to the top of the page
 
+Quote Post
Jeigh
post Aug 17 2005, 01:59 PM
Post #4


Whitest Black Mage
Group Icon

Group: [MODERATOR]
Posts: 1,323
Joined: 20-May 05
From: NB, Canada
Member No.: 5,281



Haha that woulda been good to see lol.

But yea I dont really love macs BUT as far as having lots of comp illiterates using software they barely comprehend is concerned, yes having them running on macs would be preferable... some of the virus laden spyware consumed systems I've seen here make me cry :'( People have too much power on windows machines here... and by too much power I mean "they can go on the internet using IE and break things"
Go to the top of the page
 
+Quote Post
Neverseen
post Aug 17 2005, 09:30 PM
Post #5


Premium Member
Group Icon

Group: Members
Posts: 227
Joined: 25-April 05
Member No.: 4,369



seen and heard about that on TV today, indeed... but they said that this isn't done just to make some pain in the ass, but it's more to make some profit out of it. I don't know how exactly, but I think it's true..
Go to the top of the page
 
+Quote Post
little0run
post Aug 18 2005, 03:10 AM
Post #6


Advanced Member
Group Icon

Group: Members
Posts: 114
Joined: 22-May 05
Member No.: 5,329



It's also known as W32/IRCbot.worm!MS05-039 it's a High Risk virus. It uses IRC (Internet Replay Chat) to contact a server and recieve instructions, it can be used to randomly Shutdown Windows, delete files, or install other programs...
This is all the info McAfee has listed on it. http://us.mcafee.com/virusInfo/default.asp...&virus_k=135491
Go to the top of the page
 
+Quote Post
neilski
post Aug 18 2005, 12:21 PM
Post #7


Newbie [ Level 2 ]
Group Icon

Group: Members
Posts: 10
Joined: 18-August 05
Member No.: 7,932



damn fools should have xp and you wont have such problems
Go to the top of the page
 
+Quote Post
little0run
post Aug 19 2005, 02:07 AM
Post #8


Advanced Member
Group Icon

Group: Members
Posts: 114
Joined: 22-May 05
Member No.: 5,329



The problem is in Windows XP, Windows XP has the most problems, if your goingto recomend an OS recomend Linux...
Go to the top of the page
 
+Quote Post
Cassandra
post Aug 19 2005, 03:13 AM
Post #9


Advanced Member
Group Icon

Group: Members
Posts: 110
Joined: 6-April 05
Member No.: 3,673



Just some general security notes which could help many people, both of which occured to me in connection with the recent worm outbreak:

1. One of the best ways to prevent worm infections is to make one's system completely invisible to the outside world, in other words, to stealth it. One of the best places to check to see if your system is invisible is at Gibson Research's Shield's Up. (No, guys, that's not an affiliate link. That's just the way he likes to do his URLs. As a result of testing there, I realized that even though I have good software firewalls on both my desktop machines, I should also activate the firewall in the router, since otherwise my network is visible to port scans and other probes from the outside world. Check out his other freeware security utilities also.

2. Most people should block all TFTP communication in their firewalls. That protocol may have some legitimate uses, but I've never seen it used for anything but worms, including Zotob.

Go to the top of the page
 
+Quote Post

Fast ReplyReply to this topicStart new topic

Collapse

> Similar Topics

Topics Topics
  1. Worm Sober It's Back(3)
  2. Worm Nopir-b - Delete Mp3 Files(0)
  3. Windows Xp: Simple Way Of Obtaining Admin Access(8)
  4. Aim Virus Messing Around With My C:\windows Folder(10)
  5. Windows Sercurity Centre Is Spyware?(8)
  6. Cracked Windows "genuine Advantage"(1)
  7. Worm Found In Zen Neeons?(4)
  8. Files Recovery Overwritten By Blackmail Worm(1)
  9. Asta Worm ALERT: Exploit.Win32.WMF-PFV Trying To Infect(4)
  10. Windows XP Logon Script(11)
  11. Keep Your Windows XP Protected(9)
  12. My Windows Isn't Genuine?(16)
  13. Yahoo Group Worm(7)
  14. Windows Has Slowed To A Crawl(4)
  15. MS Windows CSRSS Vulnerability(4)
  1. Windows XP Exploit - Please Help.(8)
  2. New Virus? Uglyhuman Msn Virus(29)
  3. Storm Worm Adds Millions Of Computers To Botnet(0)
  4. Difficult To Believe: Pdfs Put Windows Xp At Risk, Says Researcher(20)


 



- Lo-Fi Version Time is now: 7th September 2008 - 03:41 PM