Symantec.com > Security Response > W32.Sasser.C.Worm

W32.Sasser.C.Worm

Risk Level 2: Low

Printer Friendly Page

Discovered: May 2, 2004
Updated: May 3, 2004 8:55:49 PM
Systems Affected: Windows 2000, Windows XP

W32.Sasser.C.Worm is a worm that attempts to exploit the Microsoft Windows LSASS Buffer Overrun Vulnerability (BID 10108). The worm spreads by randomly scanning IP addresses for vulnerable systems. It is a minor variant of W32.Sasser.B.Worm. It spawns 1024 threads in an attempt to spread itself in comparison to 128 threads spawned by W32.Sasser.B.Worm.

Protection

  • Initial Rapid Release version pending
  • Latest Rapid Release version pending
  • Initial Daily Certified version pending
  • Latest Daily Certified version pending
  • Initial Weekly Certified release date pending

Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

PRINT THIS PAGE
Search by name
Example: W32.Beagle.AG@mm
Norton Green PC Service
Windows Vista Security