Windows Worm ZOTOB
August 17th, 2005
Per McAfee
(Virus alert)
Virus Profile: W32/IRCbot.worm!MS05-039
Risk Assessment
- Home Users: High
- Corporate Users: High
Date Discovered: 8/16/2005
Date Added: 8/16/2005
Per Symantec
(Security Response)
W32.Zotob.E is a worm that opens a back door and exploits the Microsoft Windows Plug and Play Buffer Overflow Vulnerability (described in Microsoft Security Bulletin MS05-039) on TCP port 445.W32.Zotob.E can run on, but not infect, computers running Windows 95/98/Me/NT4/XP. Although computers running these operating systems cannot be infected, they can still be used to infect vulnerable computers that they can connect to.
Microsoft Security Bulletin
MS05-039
Who should read this document: Customers who use Microsoft Windows
Impact of Vulnerability: Remote Code Execution and Local Elevation of Privilege
Maximum Severity Rating: Critical
Recommendation: Customers should apply the update immediately.
yay, get more updates…

