Printer Friendly
The Free Library
14,560,361 articles and books
Member login
User name  
Password 
 
Join us Forgot password?

Zotob/bozod not a serious epidemic--Kaspersky.


The biggest virus epidemic since Sasser and Mydoom? Kaspersky Lab Kaspersky Lab is a computer security company, co-founded by Natalia Kaspersky and Eugene Kaspersky in 1997, offering antivirus, anti-spyware, anti-spam, and anti-intrusion products.  comments on the current situation Zotob/Mytob/Rbot/IRCBot/Bozori: A real epidemic or media hysteria?

Comment:

A large number of international publications have issued information about a virus that has infected the networks of many major corporations and caused the biggest epidemic of the year. According to according to
prep.
1. As stated or indicated by; on the authority of: according to historians.

2. In keeping with: according to instructions.

3.
 reports broadcast on CNN CNN
 or Cable News Network

Subsidiary company of Turner Broadcasting Systems. It was created by Ted Turner in 1980 to present 24-hour live news broadcasts, using satellites to transmit reports from news bureaus around the world.
, ABC News
This article is about the American news organization. See also ABC News (disambiguation)


ABC News is a division of American television and radio network ABC, owned by The Walt Disney Company. Its current president is David Westin.
 and the NY Times and the US Congress have been affected. Other publications have reprinted this information, including the Russian media. There is some confusion as to what is actually happening, and the name(s) of the virus.

We have established that the media are describing an incident caused by a worm, which has the following names:

Zotob.e (Symantec)

WORM -RBOT.CBQ See traffic engineering methods.  (Trend Micro)

IRCBot. Worm (McAfee) Tpbot-A (Sophos)

Net-Worm. Win32.Bozori.a (Kaspersky Lab) Zotob.d (F-Secure)

Kaspersky Lab was among the first antivirus companies to detect this virus, and an urgent update was issued at 01: 50 Moscow time (GMT (Greenwich Mean Time) See UTC.

GMT - Universal Time 1
+4), on 17 August 2005. It should also be noted that the Virus Laboratory did not receive notification either from Russian or overseas users about infections caused by this worm. There has not been any noticeable increase in network activity which could be ascribed to this worm. During the Sasser epidemic (some media are comparing the current situation to the Sasser epidemic) in May 2004, which some publications are using as a comparison for Bozori.a, Sasser caused an increase in network traffic of approximately 20% to 4011/o. At the moment, there are no signs of a similar increase.

This worm exploits the Plug n Play vulnerability in Microsoft Windows (MS05-039) for which a patch was issued on 9 August 2005. It can be downloaded from microsoft's site at www.microsoft.com

Since the patch was issued, approximately 10 malicious programs which exploit this vulnerability to spread have been detected. Three Mytob variants (ce, cf, ch) which some antivirus companies called Zotob. The media has published information about these, some of which appears to be speculation which was not supported by any factual evidence of an epidemic. Several Trojan bot (1) (roBOT) A program used on the Internet that performs a repetitive function such as posting a message to multiple newsgroups or searching for information or news. Bots are used to provide comparison shopping. Bots also keep a channel open on the Internet Relay Chat (IRC).  programs have also been detected, from the Rbot and IRCBot families. None of these bots bots

maggots of flies which infest animals, especially horses and sheep. The term bot is also loosely used to include the invasive maggots such as those of Cuterebra and Wohlfahrtia spp.


horse bots
see gasterophilus.
 have caused any problems

www.kaspersky.com
COPYRIGHT 2005 A.P. Publications Ltd.
No portion of this article can be reproduced without the express written permission from the copyright holder.
Copyright 2005, Gale Group. All rights reserved. Gale Group is a Thomson Corporation Company.

 Reader Opinion

Title:

Comment:



 

Article Details
Printer friendly Cite/link Email Feedback
Title Annotation:Security News
Publication:Software World
Geographic Code:4EXRU
Date:Sep 1, 2005
Words:380
Previous Article:Rootkits: what they are and how to cope with them.(Security News)
Next Article:Sophos warns against panic as worm attacks CNN, Financial Times and New York Times.(Security News)
Topics:



Related Articles
Five mods of Nimda detected. (Virus Notes).
2001 anti virus review: Kaspersky Labs presents a year-end review of events taking place in anti-virus safety. (Security).
"Helkern" - the beginning of end as anti-virus experts have long warned. (Virus Notes).
Helkern Epidemic - events chronology. (Virus Notes).
Kaspersky Anti-Spam a new approach to spam. (Internet Focus).(Brief Article)
Version 5.0 of Kaspersky Security for PDAs now in beta-testing.(Virus Notes)(Brief Article)
Mazu Profiler proves critical in the wake of Zotob worm.(new product from Mazu Networks Inc.)(Brief Article)
Kaspersky Lab presents malware evolution: April-June 2006.(Security)
Virus kidnaps user data.(Security)
Kaspersky Malware report--April to June 2005.(Security)

Terms of use | Copyright © 2009 Farlex, Inc. | Feedback | For webmasters | Submit articles