Info-Point-Security Infoboard - Aktuelle Trojanermeldungen von Sophos :: An IRC backdoor worm that spreads through network shares by A new Tilebot variant that exploits known. Windows flaws as it spreads between network shares. http://www.info-point-security.com/forums/showthread.php?t=680&page=3HOME |
W32/Tilebot-EN is a worm with backdoor functionality for the Windows platform. W32/Tilebot-EN spreads to other network computers by exploiting common buffer overflow vulnerabilities, including: LSASS (MS04-011), RPC-DCOM (MS04-012), WKS (MS03-049) (CAN-2003-0812), PNP (MS05-039) and ASN.1 (MS04-007) and by copying itself to network shares protected by weak passwords.
Torvalds patches Linux kernel, fixes broken virus - LinuxWorld:: W32/Tilebot-EM -- Another worm that allows backdoor access through IRC after W32/Tilebot-EN -- This Tilebot variant also exploits known Windows http://www.linuxworld.com/newsletters/bug/2006/0417bug2.html?page=2HOME | WebProWire | the internet professionals newswire:: Trio Of Scan Engine Flaws - PCmag 4/26: Tilebot-EO A Worm And IRC Trojan - AntiOnline. 4/26: Trojan-PPDropper Exploits Powerpoint Flaw - AntiOnline http://www.webprowire.com/arch/20060426.htmlHOME | W32/Tilebot-EN runs continuously in the background, providing a backdoor server that allows a remote intruder to gain access and control over the computer via IRC channels.
W32/Tilebot-EN includes functionality to access the internet and communicate with a remote server via HTTP.
More information can be found at this Sophos page.
Pre-Article:Authentication in Applications Next-Article:WAN Optimization Dominated by Startups, Growing Fast
|