Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WORM_EMAIL.FU

BugsAlert Home > WORM_EMAIL.FU
 
 

It arrives as attachment to email messages spammed by another malware or a malicious user. It may be downloaded from remote sites by other malware. It may also be dropped by other malware.

Upon execution, this worm drops several files. It stays memory-resident by injecting codes into a certain process. It then creates registry entries to enable its automatic execution at every system startup.

This worm gathers target email addresses from files with certain file name extensions. It uses its own Simple Mail Transfer Protocol (SMTP) engine to send email messages with a copy of itself as attachment. However, it avoids sending email messages to addresses containing certain strings.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_EMAIL.FU

Learn more about WORM_EMAIL.FU
 
Tags: worm email.fu

Related Items

      CVE-2008-3945 (words_tag_script)

      CVE-2008-4787 (internet_explorer)

      FrSIRT - E-RESERV "ID_loc" Parameter Remote SQL Injection Vulnerability

      FrSIRT - CiscoWorks Common Services Remote Code Execution Vulnerability

      CVE-2008-4806 (lotus_connections)

      FrSIRT - fuzzylime (cms) "admindir" Parameter Remote File Inclusion Vulnerability

      WORM_MARIOFEV.D

 

Pixel