11 entries found.
Win32/Sober
Updated on Feb 21, 2005
Windows Defender Antivirus detects and removes this threat.
Win32/Sober is a family of mass-mailing worms that targets certain versions of Microsoft Windows.
The worm sends itself as an attachment to email addresses that it finds in files on the infected PC. The worm is activated when a user opens the attachment.
Alert level:
severe
Win32/Sober.V@mm
Updated on Jan 25, 2007
Win32/Sober.V@mm is a mass-mailing worm. The worm spreads by sending a copy of itself as an e-mail attachment to e-mail addresses that it gathers from certain files on the host computer. The worm runs on when the user opens the e-mail attachment.
Alert level:
severe
Win32/Sober.V@mm.dr
Updated on Jan 25, 2007
Win32/Sober.V@mm is a mass-mailing worm. The worm spreads by sending a copy of itself as an e-mail attachment to e-mail addresses that it gathers from certain files on the host computer. The worm runs on when the user opens the e-mail attachment.
Alert level:
severe
Worm:Win32/Sober.V@mm!CME157
Updated on Jan 18, 2007
Win32/Sober.V@mm!CME-157 is a mass-mailing worm. The worm spreads by sending a copy of itself as an e-mail attachment to e-mail addresses that it gathers from certain files on the host computer. The worm runs on when the user opens the e-mail attachment.
Alert level:
severe
Worm:Win32/Sober_V@mm.dr!CME157
Updated on Jan 25, 2007
Win32/Sober.V@mm is a mass-mailing worm. The worm spreads by sending a copy of itself as an e-mail attachment to e-mail addresses that it gathers from certain files on the host computer. The worm runs on when the user opens the e-mail attachment.
Alert level:
severe
Win32/Sober.Q@mm
Updated on Aug 10, 2005
Win32/Sober.Q@mm is a mass-mailing worm that targets computers running certain versions of Microsoft Windows. The worm spreads by sending a copy of itself as an attachment to e-mail addresses found on the infected computer. The e-mail may be in English or German. The worm runs when the user opens the attachment.
Alert level:
high
Win32/Sober.S@mm
Updated on Nov 30, 2006
Win32/Sober.S@mm is a mass-mailing worm that targets computers running certain versions of Microsoft Windows. The worm sends itself as an attachment to e-mail addresses found on the infected computer. The worm runs when the user opens the attachment.
Alert level:
severe
Worm:Win32/Sober.A@mm
Updated on Nov 29, 2004
Win32/Sober.A@mm is a mass-mailing worm that targets certain versions of Microsoft Windows. The worm sends itself as an attachment to e-mail addresses that it finds on the infected computer. The worm is activated when the e-mail recipient opens the attachment.
Alert level:
severe
Worm:Win32/Sober.Z@mm
Updated on Nov 23, 2005
Win32/Sober.Z@mm is a mass-mailing worm that targets computers running Microsoft Windows. The worm sends a zipped copy of itself as an attachment to e-mail addresses that it finds on the infected computer. The worm runs when a user opens the attachment in the e-mail message.
This worm was assigned CME ID CME-681.
December 16, 2005 Update: Win32/Sober.Z@mm is programmed to download and run malicious files from certain Web domains beginning on January 6, 2006, midnight UTC/GMT . Beginning approximately every two weeks thereafter, the worm is set to begin downloading and running malicious files from additional sites on the same Web domains.
Alert level:
severe
Worm:Win32/Sober.Z@mm!CME681
Updated on Nov 27, 2006
Win32/Sober.Z@mm is a mass-mailing worm that targets computers running Microsoft Windows. The worm sends a zipped copy of itself as an attachment to e-mail addresses that it finds on the infected computer. The worm runs when a user opens the attachment in the e-mail message.
This worm was assigned CME ID CME-681.
December 16, 2005 Update: Win32/Sober.Z@mm is programmed to download and run malicious files from certain Web domains beginning on January 6, 2006, midnight UTC/GMT . Beginning approximately every two weeks thereafter, the worm is set to begin downloading and running malicious files from additional sites on the same Web domains.
Alert level:
severe