|
Description: This highly destructive worm uses Microsoft Outlook to email itself to all addresses listed in the infected user's address book. If MSN Messenger is installed on the system, this worm also emails copies of itself to everyone on the infected user's MSN contact list. The details of the email it arrives with are as follows:
This worm displays the following image:
When the system time is between 8:00 to 8:59 A.M., it deletes the following files and directories:
- C:\*.*
- D:\*.*
- E:\*.*
- F:\*.*
- *.SYS
- *.VXD
- *.OCX
- *.NLS
(Note: The asterisk (*) is a wildcard character representing zero or more characters. Thus, *.* represents all files and folders, and *.SYS represents all files with the SYS extension.)
This worm fails to delete files that are in use.
For additional information about this threat, see: Solution Technical Details
Description created: Mar. 21, 2002 5:07:43 PM GMT -0800
Description updated: Mar. 22, 2002 11:30:00 AM GMT -0800
Search a new malware
Tell us how we did. Take our quick survey.
|