A  mass-mailing worm called W32.Goner.A@mm was discovered December 4, 2001.

If your system has become infected, a removal tool is available at http://securityresponse.symantec.com/avcenter/venc/data/w32.goner.a@mm.html

From the SARC Site:

Due to the increased rate of submission and level of damage, Symantec Security Response is upgrading W32.Goner.A@mm from Category 3 to Category 4.

W32.Goner.A@mm is a mass-mailing worm that is written in Visual Basic. The worm has been compressed using a known Portable Executable (PE)* file compressor. The worm can spread its infection using the ICQ network as well as by email using Microsoft Outlook. If IRC is installed, this worm can also insert mIRC scripts that will enable the computer to be used in Denial of Service (DOS) attacks

DAMAGE:

bulletPayload: Upon execution
bulletLarge scale e-mailing: Send itself to all users in Outlook Address Books
bulletDeletes files: Attempts to delete several files, including NAV
bulletDistribution:
bulletSubject of email: Hi
bulletName of attachment: Gone.scr
bulletSize of attachment: 38,912 bytes

Details and removal instructions are available at http://securityresponse.symantec.com/avcenter/venc/data/w32.goner.a@mm.html

Profile Backup Solution B2B Affiliates Contact Us Request Support SMM News Archive

Home ] [ Profile ] [ SMM Sites ] [ Flash Samples ] [ B2B Affiliates] [Support] [ Contact Us ] [SMM News Archive]

Member International Webmasters Asociation ± Web Site Design ± Full Service Web Hosting ± Data Network Services ±
±
HP Commercial Products ± Marketing Consultation ±
Member THe HTML Writers Guild
5079 North Dixie Highway, #359 FL 33334     954/202-8004 Fax 954/202-8014
spearheadmm.net  & spearheadmm.com

Copyright© 1996-2008 Spearhead Multimedia 
All rights reserved. Legal Notice.