|
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
Related Sites
[ ]
[ ]
[ ]
[ ]
[ ]
[ ]
[ ]
[ ]
General Info
[ ]
[ ]
[ ]
|
W32.Mytob.DJ@mm is a mass-mailing worm that has back door capabilities and
uses its own SMTP engine to send an email to addresses that it gathers from the
compromised computer.
This worm purports to be from the "Ttu Security Department
Assistant" and asks the recipient to confirm their account in order to
prevent account suspension. THIS IS A VIRUS-GENERATED EMAIL AND IS NOT
LEGITIMATE.
If you have received this email message, you should NOT click on the
link contained within the message and should delete the message
immediately.
An example of the email message is included below:

It is recommended that you view the full article related to this vulnerability at
Symantec.com
Quick Fix Instructions
- Download the FixMytob.exe
file from IT Help Central.
- Save the file to a convenient location, such as your download folder or
the Windows desktop (or removable media that is known to be uninfected, if
possible).
- Close all programs before you run the tool.
- If you are on a network or have a full-time connection to the Internet,
disconnect the computer from the network and the Internet.
- If you are running Windows Me or XP, disable System Restore. Please refer
to the section "System
Restore option in Windows Me/XP" for additional details.
NOTE: If you are running Windows Me/XP, we strongly recommend that you
do not skip this step.
- Double-click the FixMytob.exe
file to start the removal tool.
- Click Start to begin the process, and then allow the tool to run.
- Restart the computer.
- Run the removal tool again to ensure that the system is clean.
- If you are running Windows Me or XP, then re-enable System Restore.
- Run Live Update to make sure that you are using the most current virus
definitions.
NOTE: The removal procedure might be unsuccessful if Windows Me/XP
System Restore is not disabled as previously directed because Windows prevents
System Restore from being modified by outside programs. Because of this, the
removal tool might fail.
For specific details on each of these steps,
please follow this link.
|
 |