[email protected]

Aliases: Bloodhound.W32.VBWORM
Variants: N/A

Classification: Malware
Category: Computer Worm

Status: Inactive
Spreading: Slow
Geographical info: Some parts of Asia, Europe, North and South America, Africa and Australia
Removal: Easy
Platform: W32
Discovered: 30 Jul 2002
Damage: Low

Characteristics: [email protected] was discovered on July 30, 2002. [email protected] is a worm that sends itself to all email addresses in the Outlook Address Book and the Windows Address Book. Therefore, [email protected] is a mass-mailing worm that can infect more that once computer. Written in the Microsoft Visual Basic or VB programming language, the worm affects Windows operating systems.

More details about [email protected]

[email protected] copies itself as C:\%system%\Par.exe and adds a value to the system registry key. This would enable the worm to run every time computer is restarted. Then, the worm sends itself to al addresses listed in the Microsoft Outlook and Windows address book. The mail has the subject “I LIVE or Hello Hello Hello” with Par.exe as the file attachment. If the attachment is opened, propagation of the worm begins to infect files in the computer.

The [email protected] program can infect the user's computer with its malicious software. It contains viruses, spyware and other Trojans. The security information of the user can be retrieved by the [email protected] program. This information can include passwords and pins that can be used by the remote hacker for their own malicious needs. The author of this program can also be mentioned to have numerous benefits throughout the hacking.