https://bel.proz.com/forum/safe_computing/13911-new_virus_spotted_w32neromamm.html

New virus spotted: W32.Neroma@mm
Аўтар тэмы: Evert DELOOF-SYS
Evert DELOOF-SYS
Evert DELOOF-SYS  Identity Verified
Бельгія
Local time: 18:52
Член
англійская → галандская
+ ...
Sep 8, 2003

New September 11 virus spotted; more on the way?

By Keith Regan, Information Security Magazine
08 Sep 2003, Information Security Magazine

The first of what researchers predict could be a spate of new viruses related to the second anniversary of the September 11 terrorist attacks has been spotted.



W32.Neroma@mm, as named by Symantec, spreads through Microsoft Outlook. The message subjec
... See more
New September 11 virus spotted; more on the way?

By Keith Regan, Information Security Magazine
08 Sep 2003, Information Security Magazine

The first of what researchers predict could be a spate of new viruses related to the second anniversary of the September 11 terrorist attacks has been spotted.



W32.Neroma@mm, as named by Symantec, spreads through Microsoft Outlook. The message subject line is "It's Near 911." Double clicking the attachment activates the virus, which then attempts to send itself to every listing in the user's Outlook address book.

Eric Kwon, CEO of AV firm Global Hauri, which discovered the virus on Sept. 2, recommends that enterprises block incoming e-mail messages with that subject line. As of Friday, Symantec reported fewer than 50 Neroma infections.

Kwon notes that just days after Sept. 11, the Nimda worm hit the world's computers, causing millions of dollars in damage. The recent onslaught of Blaster and Sobig.F infections demonstrate that networks are every bit as vulnerable now as they were two years ago.

Meanwhile, virus watchers in the U.K. have spotted a virus that criticizes the decisions of British prime minister Tony Blair and attempts to use infected computers to launch a distributed denial-of-service attack against his Web site.

Vendor Sophos says "Quarters" can spread through e-mail, where it is disguised as a message about "account information" and through Internet chat. Also called "Blurt" by Network Associates, the virus disables antivirus, personal firewalls, the registry editor and the task manager.

Graham Cluley, Sophos's senior technology consultant, says the worm overwrites files on the user's computer with the text "Infected by the WIN32.SORT-IT-OUT-BLAIR Virus!" and can display an anti-Blair message.

Up-to-date antivirus software will prevent infection. Sophos recommends filtering executable files at the e-mail gateway.
Collapse


 


To report site rules violations or get help, contact a site moderator:

Мадэратар(ы) гэтага форума
Maya Gorgoshidze[Call to this topic]
Prachya Mruetusatorn[Call to this topic]

You can also contact site staff by submitting a support request »

New virus spotted: W32.Neroma@mm






Protemos translation business management system
Create your account in minutes, and start working! 3-month trial for agencies, and free for freelancers!

The system lets you keep client/vendor database, with contacts and rates, manage projects and assign jobs to vendors, issue invoices, track payments, store and manage project files, generate business reports on turnover profit per client/manager etc.

More info »
Anycount & Translation Office 3000
Translation Office 3000

Translation Office 3000 is an advanced accounting tool for freelance translators and small agencies. TO3000 easily and seamlessly integrates with the business life of professional freelance translators.

More info »