W32.Dabber.B
| Discovered on: June 04, 2004 Description:
W32.Dabber.B is a variant of W32.Dabber.A. This worm propagates by
exploiting a vulnerability in the FTP server component of W32.Sasser.Worm
and its variants.
W32.Dabber.B is based on available exploit code. It installs a backdoor
on infected hosts and tries to listen on port 9898. If the attempt fails,
W32Dabber.A tries to listen on ports 9899 through 9999 in sequence until
it finds an open port.
This threat is written in C++ and is packed with UPX.
Removal Instructions For Symantec & Norton Users:
- Disable System Restore (Windows Me/XP).
- Update the virus definitions.
- Do one of the following:
 | Windows 95/98/Me: Restart the computer in Safe mode.
 | Windows NT/2000/XP: End the malicious process. |
|
Run a full system scan and delete all the files detected as
W32.Dabber.B.
Reverse the changes made to the registry.
|
| |
|
Our
Staff Recommends
 
|
Top
Ranked Software for Anti-Virus,
Spyware, Firewall,
Adware
Remover and everything else for software.
I
Warned You - Software and Computer Protection
 
|