Welcome to the Virus Encyclopedia of Panda Security.
|Effects: ||It does not have any destructive effects. It spreads via e-mail and if the system date is earlier than 14 July 2003, it spreads across network drives.|
|First detected on:||June 25, 2003|
|Detection updated on:||Oct. 25, 2007|
|Yes, using TruPrevent Technologies
Sobig.E is a worm that does not have any damaging effects, which spreads via e-mail. The message carrying this worm is easy to identify, as the body of the message is always: Please see the attached zip file for details.
Once it has infected a computer, Sobig.E looks for e-mail addresses in all the files it finds on the affected computer with the following extensions: TXT, EML, HTM*,DBX and WAB. It then sends a copy of itself to all these addresses.
Sobig.E also spreads across network drives if the date is earlier than July 14, 2003. In order to do this, it copies itself to the Startup directories in the computers connected to the same network as the affected computer.
Sobig.E is easy to recognize when it spreads via e-mail, as the message carrying the worm always contains the following text: Please see the attached zip file for details.