Tip: New worm "W32.Swen.A@mm" etc. is spreading like wildfire

Zepper

Elite Member
May 1, 2001
18,998
0
0
I've gotten more copies of the carriers (I have seen 2 diff types) for this one than any other worm/virus/trojan. I think I only got 3 or 4 from the Sobig and I've gotten at least 10 of these already. This thing really dumps a load on the system of anyone dumb or ignorant enough to execute the attachment - see the symantec security site. They rate cleanup as "difficult"!
. It disguises itself as a security update from MS and spoofs real MS return addresses. Also poses as "delivery failure notices from qmail" etc. Be careful out there
.bh.
:moon:
 

DOSfan

Senior member
Sep 19, 2003
522
0
0
Using the username and password, the worm will log into the POP3 server and check the user's email. If the worm finds an email sent by the worm, it will be deleted. The worm will only delete messages that have been sent from the currently infected computer.

Damn! People are getting more and more creative.... :(

Yes, do be careful.