Welcome to the Virus Encyclopedia of Panda Security.
|Effects: ||It installs a Trojan type backdoor, which attempts to connect to an IRC channel and waits for commands|
|First detected on:||Aug. 21, 2003|
|Detection updated on:||Dec. 9, 2003|
|Yes, using TruPrevent Technologies
Dumaru is a worm that spreads via e-mail in a message with the subject Use this patch immediately ! and an attachment called PATCH.EXE .
Dumaru drops a Trojan type backdoor into the affected computer, which attempts to connect to an IRC channel and waits for commands.
Dumaru sends itself out to all the addresses it finds in files with a WAB, DBX, TBB or ABD extension, or whose extension starts with HTM.
A clear indication that you have receive Dumaru is a message with the following characteristics:
Use this patch immediately !
Dear friend , use this Internet Explorer patch now!
There are dangerous virus in the Internet now!
More than 500.000 already infected!