>From SANS:
The NIMDA worm is spreading faster than Code Red, appears to have at
least four distinct propagation mechanisms, and infects hosts running
most versions of Windows. In other words it is a far more vicious worm
than Code Red. The network activity caused by the worm has resulted
in effective denial of service attacks at many sites. I've included
this morning's complete report from Incidents.org at the end of this
Newsbites issue. Updates to the report can be found at
http://www.incidents.org/react/nimda.php
Now, let's see how long it takes some miscrant to combine this
infection method with a BIOS nuker (CIH Virus), a monitor killer
(one that monkeys with the H & V refresh settings), and is written
in 100% assembly so it runs under Linux also (W32.Winux). This
will result in something that kills your monitor ($$$), cannot be
easily removed by the average person without buying a new MOBO ($$$),
and spreads to everything. With 200,000 people replacing their
computers and monitors, it should jumpstart the economy, right?
*This* would make nimda look wimpy.
George