W32/Bofra.B@mm
| W32/Bofra.B@mm |
Destructivity: |
| • Detected by virus detection files published: 11/9/2004 | • Type: Worm |
| • Virus characteristics first published: 11/9/2004 | • Spreading mechanism: Email, Webpage |
| • Virus characteristics latest update: 2/24/2005 | • Overall risk: Low |
| • Alias: W32/Mydoom.ah@MM, I-Worm/Mydoom.AC, I-Worm.Mydoom.ad, W32.Mydoom.AH@mm, W32/Bofra-B | • Payload: Sets up a webserver and attempts to connect to IRC servers |
| • Infection type: Microsoft Windows 95/98/98 SE/ME/NT 4/2000/XP/2003/Vista |
| Virus type |
Spreading mechanism |
Destructivity and payload |
Additional descriptions |
Detection and removal |
||||||||||
| The worm sets up a small web server, listening on port 1639 on infected systems. In addition the worm attemts to log onto a number of IRC servers. | ||||||||||||||