rudy-Diiriye Posted June 5, 2003 NEW YORK (AP) - A new computer virus that offers hackers full control of infected PCs, giving them access to critical information such as passwords and credit-card numbers, was spreading on the Internet Thursday. The virus, dubbed "BugBear.B" by virus experts, follows two other quickly spreading e-mail viruses seen in recent weeks - "Sobig.B" and "Sobig.C" - but far exceeds them in its ability to do harm and in the aggressiveness of its spread. E-mail filtering services company MessageLabs Inc. had blocked 37,400 copies of BugBear.B from 125 countries by midday Thursday, after barely registering a blip on Wednesday, when the first copies were seen. Network Associates Inc. (NET) said it had received 100 infection reports from corporate and consumer customers as of Thursday morning. Its rival, Symantec Corp. (SYMC), said it received 180 infection reports from consumers and 51 from corporate customers. All it takes is one e-mailed copy of the virus entering a corporate network for havoc to ensue. Once inside, BugBear.B will spread throughout a network. Infected e-mails can carry various "from" addresses, which don't necessarily belong to the real sender. The subject lines and message texts also vary widely and in some cases are stolen from documents and files found on the victim's PC. The virus-laden attachment is compressed with a modified UPX format and shows up with multiple names. BugBear.B, which is a variant of the "BugBear" virus that struck in late September 2002, installs a hidden file that can allow hackers to access infected machines, where they could delete files or run programs of their choosing. Because the virus installs a keylogger program that collects a user's keystrokes, including passwords and credit-card numbers entered into Web sites, hackers could use their access to the PC to acquire such sensitive personal information. Quote Share this post Link to post Share on other sites
rudy-Diiriye Posted June 5, 2003 try not to open any emails with attachments that are not virus scanned or for that matter any email that u dont know who send it. be carefully yall! Quote Share this post Link to post Share on other sites
nuune Posted June 6, 2003 horrible stuff,what a craap Quote Share this post Link to post Share on other sites
Lady Posted June 6, 2003 Hey rudy Thanks for the Info I will watch out. Quote Share this post Link to post Share on other sites
3zma1L Posted June 6, 2003 BugBear.B is an old one. I think, you probably refer (to) W32.Bugbear.B@mm also known as: Win32.Bugbear.B [CA], W32/Bugbear.b@MM [McAfee], PE_BUGBEAR.B [Trend], W32/Bugbear-B [sophos], I-Worm.Tanatos.b [KAV], W32/Bugbear.B [Panda], Win32/Bugbear.B@mm [RAV] which is very new mass-mailing polymorphic worm/virus that also has a backdoor capabilities. It tries to terminate processes of a/v and f/w programs to have a full control over your box. The wrom usualy uses or creates these following subject lines: (so watch out ) Hello! update hmm.. Payment notices Just a reminder Correction of errors history screen Announcement various Introduction Interesting... I need help about script!!! Stats Please Help... Report Membership Confirmation Get a FREE gift! Today Only New Contests Lost & Found bad news wow! fantastic click on this! Market Update Report empty account My eBay ads Cows 25 merchants and rising CALL FOR INFORMATION! new reading Sponsors needed SCAM alert!!! Warning! its easy free shipping! News Daily Email Reminder Tools For Your Online Business New bonus in your cash account Your Gift Re: $150 FREE Bonus! Your News Alert Hi! Get 8 FREE issues - no risk! Greets! ------- My own Risk Rating: Medium Removal: easy (xp, 98se, windoz nt and 2000) If you are running under these OS OS/2, UNIX, Linux, you probably wont have to worry! Quote Share this post Link to post Share on other sites
shyhem Posted June 8, 2003 what about private messages from somaliaonline,should we worry about virus related attack... ...... Quote Share this post Link to post Share on other sites