Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WORM_MYTOB.BZ

BugsAlert Home > WORM_MYTOB.BZ
 
 

This worm propagates via network shares and email messages. Upon execution, it drops a copy of itself in the Windows system folder as the file TASKGMR.EXE. It also creates several registry entries to ensure its execution every system startup.

This worm takes advantage of the LSASS Windows vulnerability to propagate across networks. For more information about this vulnerability, please refer to the following Microsoft Web page:

It prevents users from accessing several antivirus and security Web sites by redirecting the connection to the local machine.

It also drops a component file, which is responsible for creating copies of this worm. Trend Micro detects the said component file as WORM_MYTOB.J.




Original Source: http://feeds.trendmicro.com/~r/MalwareTop10/~3/208120714/default5.asp

Learn more about WORM_MYTOB.BZ
 
Tags: worm mytob.bz

Related Items

      CVE-2008-3638 (mac_os_x, mac_os_x_server)

      CVE-2008-3691 (VMWare Workstation, VMWare Player, ACE, VMware Server)

      CVE-2008-3557 (free_hosting_manager)

      rPath update for cups

      CVE-2008-4923 (aztec_activex)

      Vuln: Mantis 'view.php' HTML Injection Vulnerability

      The Case of the Chinese Massive Text Spam

 

Pixel