Eng
  1. Skip to navigation
  2. Skip to content
  3. Skip to sidebar


Bofra


Aliases:


Bofra
Bofra.A, Bofra.B, Bofra.C, Bofra.D
Bofra.E, Bofra.F
I-Worm.Bofra.a, I-Worm.Bofra.b, I-Worm.Bofra.c

Malware

W32

Summary

Bofra is a family of mass-mailing worms which most likely originates from the MyDoom worm family.

The variants of Bofra are functionally really close to each other.



Disinfection & Removal

Automatic Disinfection

Allow F-Secure Anti-Virus to disinfect the relevant files.

For more general information on disinfection, please see Removal Instructions.



Technical Details


Variant:Bofra.A

The description of Bofra.A can be found at

http://www.f-secure.com/v-descs/bofra_a.shtml


Variant:Bofra.B

The description of Bofra.B can be found at

http://www.f-secure.com/v-descs/bofra_b.shtml


Variant:Bofra.C

The description of Bofra.C can be found at

http://www.f-secure.com/v-descs/bofra_c.shtml


Variant:Bofra.D

Bofra.D is very close to Bofra.B variant. The description is available at

http://www.f-secure.com/v-descs/bofra_b.shtml


Variant:Bofra.E

Bofra.E is very close to Bofra.C variant. The description is available at

http://www.f-secure.com/v-descs/bofra_c.shtml


Variant:Bofra.F

Bofra.F is very close to Bofra.C variant. The description is available at

http://www.f-secure.com/v-descs/bofra_c.shtml



Detection

Detection for all the known Bofra variant has been included since the following F-Secure Anti-Virus updates:

Detection Type: PC
Database: 2004-11-11_01





Submit a sample




Wondering if a file or URL is malicious? Submit a sample to our Lab for analysis via the Sample Analysis System (SAS)

Give And Get Advice




Give advice. Get advice. Share the knowledge on our free discussion forum.