watch your email for worms from symantec or microsoft....
[note: protection against this worm was made available from symantec via Intelligent Updater virus defs dated July 14, 2003, or LiveUpdate™ defs dated July 16, 2003] W32.Gruel@mm is a worm that spreads by email and file-sharing networks. Its payload includes changing user passwords, hiding drive C, and making numerous changes to the system registry.
The email has the following characteristics:
Subject: Microsoft Windows Critical Update. Attachment: Windows Critical Update 088562.exe
or Subject: Symantec: New serious virus found Attachment: Symantec_Norton_Tool.exe
or
Subject: Microsoft Windows Critical Update Attachment: AntiVirus_Patch.exe
Also Known As: W32/Gruel-A [Sophos], W32/Fakerr@MM [McAfee], Win32.Gruel [CA] Type: Worm Infection Length: 102,400 bytes Systems Affected: Windows 95, Windows 98, Windows NT, Windows 2000, Windows XP, Windows Me
Removal is rated as Difficult
more.... securityresponse.symantec.com@mm.html |