Threat Description

Bofra

Details

Aliases: Bofra, Bofra.A, Bofra.B, Bofra.C, Bofra.D, Bofra.E, Bofra.F, I-Worm.Bofra.a, I-Worm.Bofra.b, I-Worm.Bofra.c
Category: Malware
Type:
Platform: W32

Summary



Bofra is a family of mass-mailing worms which most likely originates from the MyDoom worm family.

The variants of Bofra are functionally really close to each other.



Removal



Automatic Disinfection

Allow F-Secure Anti-Virus to disinfect the relevant files.

For more general information on disinfection, please see Removal Instructions.



Technical Details




Variant:Bofra.A

The description of Bofra.A can be found at

http://www.f-secure.com/v-descs/bofra_a.shtml


Variant:Bofra.B

The description of Bofra.B can be found at

http://www.f-secure.com/v-descs/bofra_b.shtml


Variant:Bofra.C

The description of Bofra.C can be found at

http://www.f-secure.com/v-descs/bofra_c.shtml


Variant:Bofra.D

Bofra.D is very close to Bofra.B variant. The description is available at

http://www.f-secure.com/v-descs/bofra_b.shtml


Variant:Bofra.E

Bofra.E is very close to Bofra.C variant. The description is available at

http://www.f-secure.com/v-descs/bofra_c.shtml


Variant:Bofra.F

Bofra.F is very close to Bofra.C variant. The description is available at

http://www.f-secure.com/v-descs/bofra_c.shtml



Detection


Detection for all the known Bofra variant has been included since the following F-Secure Anti-Virus updates:
Detection Type: PC
Database: 2004-11-11_01




SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

Learn More