Panda Software Reports the Appearance of Sobig.E
Posted on 25.06.2003
Panda Software has reported the appearance of Sobig.E. As the international antivirus developer has been receiving numerous reports of infections, users are advised to treat all e-mails received with caution.

Sobig.E is sent via e-mail, compressed in a zip file, creating an added danger as to date, there have been few viruses that have propagated in this way and many users may not have the option to scan this particular type of compressed file enabled in their antiviruses.

Sobig.E infects Win9x, ME, NT, 2000 and XP systems. It is sent out, using its own SMTP engine, to addresses it finds in all directories in files on the infected system with the following extensions: .TXT, .EML, .HTM*, .DBX, .WAB.

The e-mail containing Sobig.E has the following characteristics:
Possible subjects include:
Re: Movie
Re: Application

Message text: Please see the attached zip file for details.

Attachment: Your_details.zip

Sobig.E creates two files in the affected computer, one called "%windir%\winssk32.exe", which contains the worm's code, and the other called "msrrf.dat". It also creates two keys in the Windows registry.





Spotlight

Hackers indicted for stealing Apache helicopter training software

Posted on 1 October 2014.  |  Members of a computer hacking ring have been charged with breaking into computer networks of prominent technology companies and the US Army and stealing more than $100 million in intellectual property and other proprietary data.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  

DON'T
MISS

Wed, Oct 1st
    COPYRIGHT 1998-2014 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //