|
|||||||||||
|
Re: Backdoor.sdbot trojan
From: Axel Pettinger <api(at)epost.de>
Date: Tue Nov 12 2002 - 12:04:48 EST
candy wrote:
That report was wrong. The activity you see now is probably still the same we've first seen more than a month ago. It's the Opaserv worm. Well, some av companies call it "the Opaserv family" now ... Its family members spread using different file names, so it's possible to find several of them on an infected computer. See also <http://isc.incidents.org/port_details.html?port=137>.
Description of the worm:
BTW, Trend Micro mentions a new variant ("H") today.
Regards,
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:01:38 EDT |
||||||||||
|
|||||||||||