Jump to content

Worm.SomeFool.P


frozen
 Share

Recommended Posts

So I wake up today, start my freshly installed mandriva 2006..

 

I open my /home directory and I find there about 10 files randomly named such as:

wav312gIIMXXG.wav

wavSu3Meer1X2.wav

jpgOv7YI7GquJ.jpg

jpgy2cKAqHoHG.jpg

gif9UqTjXip1T.gif

gifdP4uyMvHuF.gif

gifIgqrrTeMFP.gif

gifjnPtKyJEeC.gif

gifJwepkT7D8f.gif

gifRXUDOkhmrQ.gif

..

and a few other .bin files which I've deleted just to be on the safe side..

 

once i saw that, immediately started looking at logs (thought i was exploited :)) but found nothing... then i ran clamscan only to find some worm labeled Worm.SomeFool.P.

 

how did that get there?? according to timestamp all the files were placed between 00:30 and 01:30 this morning..

 

I openned up Kmail and found some notifications by my ISP's virus scanner about attachments containing that same worm but I didn't know it could work under linux so I just sent those messages to trash instead of permanently deleting them...

 

has anyone experienced this before??

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
 Share

×
×
  • Create New...