Discovered: May 2, 2004
Updated: May 3, 2004 8:55:49 PM
Systems Affected: Windows 2000, Windows XP
W32.Sasser.C.Worm is a worm that attempts to exploit the Microsoft Windows LSASS Buffer Overrun Vulnerability (BID 10108). The worm spreads by randomly scanning IP addresses for vulnerable systems. It is a minor variant of W32.Sasser.B.Worm. It spawns 1024 threads in an attempt to spread itself in comparison to 128 threads spawned by W32.Sasser.B.Worm.
Protection
-
Initial Rapid Release version pending
-
Latest Rapid Release version pending
-
Initial Daily Certified version pending
-
Latest Daily Certified version pending
-
Initial Weekly Certified release date pending
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.