TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
WORM_MOFEI.B
Overview

Malware type: Worm

Aliases: Net-Worm.Win32.Mofeir.b (Kaspersky), W32.Femot.Worm (Symantec), Worm/Mofeir.B.1 (Avira), W32/Mofei-A (Sophos),

In the wild: No

Destructive: Yes

Language: English

Platform: Windows 95, 98, NT, ME, 2000, XP, Server 2003

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

High

Distribution potential:

High

Description: 

This destructive, memory-resident worm attempts to log on to remote machines using a list of user names. It then drops and executes a copy of itself on the remote machines.

It has backdoor capabilities, and may execute commands coming from a remote malicious user. The said routine provides the remote user virtual control over the affected machine, thus compromising system security.

This worm runs on Windows 95, 98, ME, NT, 2000, XP, and Server 2003. However, it can only propagate across systems running Windows NT, 2000, XP, and Server 2003.

For additional information about this threat, see:
Solution
Technical Details

Description created: Jun. 5, 2003 12:07:04 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.