Threat Description

Bofra

Details

Aliases:Bofra, Bofra.A, Bofra.B, Bofra.C, Bofra.D, Bofra.E, Bofra.F, I-Worm.Bofra.a, I-Worm.Bofra.b, I-Worm.Bofra.c
Category: Malware
Type:
Platform: W32

Summary



Bofra is a family of mass-mailing worms which most likely originates from the MyDoom worm family.

The variants of Bofra are functionally really close to each other.



Removal


Automatic action

Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.

More

You may wish to refer to the Support Community for further assistance. You also may also refer to General Removal Instructions for a general guide on alternative disinfection actions.



Technical Details




Variant:Bofra.A

The description of Bofra.A can be found at

http://www.f-secure.com/v-descs/bofra_a.shtml


Variant:Bofra.B

The description of Bofra.B can be found at

http://www.f-secure.com/v-descs/bofra_b.shtml


Variant:Bofra.C

The description of Bofra.C can be found at

http://www.f-secure.com/v-descs/bofra_c.shtml


Variant:Bofra.D

Bofra.D is very close to Bofra.B variant. The description is available at

http://www.f-secure.com/v-descs/bofra_b.shtml


Variant:Bofra.E

Bofra.E is very close to Bofra.C variant. The description is available at

http://www.f-secure.com/v-descs/bofra_c.shtml


Variant:Bofra.F

Bofra.F is very close to Bofra.C variant. The description is available at

http://www.f-secure.com/v-descs/bofra_c.shtml



Detection


Detection for all the known Bofra variant has been included since the following F-Secure Anti-Virus updates:
Detection Type: PC
Database: 2004-11-11_01




SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

Learn More