Breaking News

SCUF Gaming Unveils Omega, Latest Officially Licensed Pro Controller for PS5 LiberNovo Launches Revolutionary New Ergonomic Chair Lineup Noctua presents NF-A12x25 G2 chromax.black 120mm fans INNO3D AT COMPUTEX 2026 Micron Redefines AI Performance With Sampling of 256GB DDR5 Server Module

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

DDoS Attacking US and South Korea Government Sites

DDoS Attacking US and South Korea Government Sites

Enterprise & IT Jul 9,2009 0

There is currently a DDoS attack against a number of websites, most of them belong to US and South Korea goverment sites. The malware involved in the attack has been detected as W32/Mydoom.HN. The worm reportedly may be received as an email attachment.

Once executed, the worm drops the following files, according to Symantec:

* %System%\[RANDOM CHARACTERS].nls
* %System%\wmcfg.exe (detected as W32.Mydoom.A@mm)
* %System%\wmiconf.dll (detected as Trojan.Dozer)
* %System%\dllcache\npptools.dll
* %System%\drivers\npf.sys
* %System%\npptools.dll
* %System%\Packet.dll
* %System%\WanPacket.dll
* %System%\wpcap.dll

The worm creates the following registry entry, so that it runs every time Windows starts:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows
NT\CurrentVersion\SvcHost\"wmiconf" = "WmiConfig"

It creates a new service with the following characteristics:

Service name: WmiConfig service
Display name: WmiConfig service
Startup Type: Automatic

The worm creates the service by adding entries to the following registry subkeys:

* HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WmiConfig
* HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WmiConfig

The worm drops Trojan.Dozer, a distributed denial of service (DDoS) Trojan, and W32.Mydoom.A@mm, the component that sends out the emails with W32.Dozer attached. All of these components work together to perform the DDoS attacks and spread through email.

South Korea's spy agency suspects North Korea is behind the series of attacks that have triggered Web site outages in South Korea and the United States.

Tags: Virus
Previous Post
NXP and TSMC Deliver First 45nm Single-Chip Digital TV Platform
Next Post
Nokia Introduces the Nokia 3720 Classic

Related Posts

  • Samsung Laptop Full of Notorious Malware Is On Sale For $1.2M

  • Cisco Identifies Virus That Kills Off PCs

  • Researchers Identify iOS Espionage App

  • Researchers Identify New iOS Vulnerability

  • Dropbox, WordPress Used To Spread Malware

  • Microsoft Says Viruses Are Back On The Rise

  • First Targeted Attack Utilising Malware for Android Devices Reported

  • Cyber Attack Targets Nato, Government Websites

Latest News

SCUF Gaming Unveils Omega, Latest Officially Licensed Pro Controller for PS5
Gaming

SCUF Gaming Unveils Omega, Latest Officially Licensed Pro Controller for PS5

LiberNovo Launches Revolutionary New Ergonomic Chair Lineup
Consumer Electronics

LiberNovo Launches Revolutionary New Ergonomic Chair Lineup

Noctua presents NF-A12x25 G2 chromax.black 120mm fans
Cooling Systems

Noctua presents NF-A12x25 G2 chromax.black 120mm fans

INNO3D AT COMPUTEX 2026
GPUs

INNO3D AT COMPUTEX 2026

Micron Redefines AI Performance With Sampling of 256GB DDR5 Server Module
Enterprise & IT

Micron Redefines AI Performance With Sampling of 256GB DDR5 Server Module

Popular Reviews

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Soft2bet and the unseen hardware that makes instant play possible

Soft2bet and the unseen hardware that makes instant play possible

Crucial T710 2TB NVME SSD

Crucial T710 2TB NVME SSD

JSAUX 65Wh Rog Ally Battery

JSAUX 65Wh Rog Ally Battery

Introducing PriceHub

Introducing PriceHub

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed