Taimishu
Blue Belt
This looks to be the same as RATOS-A.
Worm.Win32.Mydoom.Q Alert!
Worm.Win32.Mydoom.Q is new worm discovered today. Like its predecessors Worm.Win32.Mydoom.Q uses its own SMTP component for spreading. The pest was coded in C++ and has a size of 27135 bytes. Worm.Win32.Mydoom.Q mails have the following layout:
Subject: photos
Body: LOL!)))
Attachment name: photos_arc.exe
Mydoom.Q can be detected and removed with a² using the latest signature updates. The a² personal background guard blocks the worm immediately if it is started.
A more detailed description of the worm can be found at the a² Malware Database:
http://www.emsisoft.com/en/malware/?Worm.Win32.Mydoom.Q
Sincerely yours,
Worm.Win32.Mydoom.Q Alert!
Worm.Win32.Mydoom.Q is new worm discovered today. Like its predecessors Worm.Win32.Mydoom.Q uses its own SMTP component for spreading. The pest was coded in C++ and has a size of 27135 bytes. Worm.Win32.Mydoom.Q mails have the following layout:
Subject: photos
Body: LOL!)))
Attachment name: photos_arc.exe
Mydoom.Q can be detected and removed with a² using the latest signature updates. The a² personal background guard blocks the worm immediately if it is started.
A more detailed description of the worm can be found at the a² Malware Database:
http://www.emsisoft.com/en/malware/?Worm.Win32.Mydoom.Q
Sincerely yours,