F-Secure has posted an advisory saying that it has "no further information on what the worm does in addition to spreading." The Iraq_Oil virus is unlike many recent viruses that spread through E-mail. According to F-Secure, this one scans the Internet for Windows 2000 and XP systems that have shared folders and aren't protected by a personal firewall. If it's successful in guessing the password, the virus copies itself to the system, usually in a file named iraq_oil.exe, then looks for new systems to infect.
The virus exploits the Windows Server Message Block on Port 445, and F-Secure says most every personal firewall will protect against this worm. More information is available at F-Secure's Web site at www.f-secure.fi/v-descs/lioten.shtml.
Stay connected and informed by visiting the CA Solutions Center Community!

Become a member today for instant access to free InformationWeek research, expert advice, peer perspectives, and more on the following topics:
- Application Performance Management (APM)
- Security Management
- Mainframe 2.0
- IT Automation
- Service Assurance
Also, visit our Government and Financial Services groups to see how these technologies apply specifically to those industries.
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.