W32.Sober.I[J] aka Sober.I[J]:uses its own
SMTP engine. Spreads by sending itself as email
attachment to addresses collected on the infected
computer. Email subject varies and will be in English
or German. Attachment will have a .bat, .com, .pif,
.scr, or .zip file extension. Most of the times
even a double extension.
Check out the Latest
Worms (MS) page.
W32.Mydoom.AH/AI aka Mydoom.AH/AI: new variants
of W32.Mydoom. Use their own SMTP engine to send
itself to all the email addresses that it finds.
Exploits the Microsoft Internet Explorer Malformed
IFRAME Remote Buffer Overflow Vulnerability.
Check out the Latest
Worms (MS) page.