Common Tasks

Recent Posts

Community

Email Notifications

Personal Links

Archives

Security Protection - Harry Waldron (CS)

Security Best Practices, Breaking News, & Updates

Wurmark.J - MEDIUM RISK by Secunia/Trend

  Avoid ZIP based attachments as this one is spreading significantly. 

Wurmark.J - MEDIUM RISK by Secunia/Trend

Trend Micro WORM_WURMARK.J Information

quote: As of May 11, 2005 at 4:30 am (Pacific Daylight Time; GMT-7:00) TrendLabs has declared a Medium risk alert in order to control this new WURMARK variant that is currently spreading in France, India, Singapore, and Taiwan.


This memory-resident worm propagates via email messages. Upon execution, it drops a copy of itself in the Windows system folder using a random file name. It also drops a randomly named (Dynamic Link Library) DLL file in the Windows system folder, which is a component of an IESpy, a Spyware program. This worm has a keylogging capability. It saves the logs typed by the user in a dropped random DLL file.

AVOID THE FOLLOWING ATTACHMENTS

Attachment: (any of the following file names)
•details.zip
•girls.zip
•image.zip
•love.zip
•message.zip
•music.zip
•news.zip
•photo.zip
•pic.zip
•readme.zip
•resume.zip
•screensaver.zip
•song.zip
•video.zip