The worm uses infected copies of remote-access app VNC and Internet-communications app IRC
Published:
14 March 2003 y., Friday
The latest Internet worm infects Windows NT/2000/XP Professional machines with two Trojan horses and leaves infected systems open for use in future distributed denial-of-service (DDoS) attacks. Unlike previous worms, Deloder (w32.deloder.a) does not spread using e-mail; rather, it scans the Internet looking for open 445 TCP/IP ports.
Deloder carries an infected version of a commonly available network remote administration tool, Virtual Network Computing (VNC), and an Internet Relay Chat (IRC) bot. VNC can be used for legitimate remote access purposes, but used within the context of this worm, it is considered to be a Trojan horse. Because Deloder spreads via shared network connections and could cause future damage to files and systems alike, this worm rates a 6 on the CNET Virus Meter.
Deloder scans the Internet, searching for computers with an open Windows port 445, which corresponds to Microsoft Service Message Block (SMB) over TCP/IP. This port allows the sharing of Windows files, usually protected with passwords. Deloder tries a number of different weak passwords such as password or computer in order to gain access to computers on a network. Corporate systems with strong file-sharing passwords and those behind firewalls should be protected. However, many home systems with default or weak passwords and no firewall may be vulnerable to unauthorized remote access, courtesy of this worm.
Šaltinis:
cnet.com
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.
The most popular articles
Software company announced new structure_ of it_s business.
more »
Unisys Corporation (NYSE: UIS) announced enhancements to its Baggage Reconciliation System (BRS) featuring more detailed information about baggage handling requirements for incoming flights, real-time monitoring and alerts of service level agreements (SLAs), and a mobile app to provide passengers with live updates on when and where to collect their bags.
more »
Samsung doubled its share of the tablet PC market in the last three months of 2012, research firm IDC has said.
more »
Facebook boss Mark Zuckerberg has strongly denied the social network is planning to release its own phone.
more »
The OnLive gaming service is to be made available to Google TV users, following a deal with electronics firm LG. One of a handful of firms making hardware for Google TV. LG's G2 series sets have Google's TV service built in.
more »
Blackberry has become the latest smartphone to offer free wi-fi calls to users via its own software. Research In Motion (RIM) has added the facility to its Blackberry Messenger (BBM) app, which already offered an alternative to text messages.
more »
We are delighted to announce that on 26th of January SafeNet Sentinel Cloud was awarded the SiiA 2012 Best Digital Rights Management Solution!
more »
The Spanish government has approved tough new legislation which could see websites deemed to be trading in pirated material blocked within ten days.
more »
The Los Angeles World Airports (LAWA), which oversees airport operations for the city of Los Angeles, has awarded a contract modification to Unisys (NYSE: UIS) to upgrade its access control and alarm monitoring system, used to identify the 45,000 airport employees, contractors, police and others who work at the organization’s three airports.
more »
Unisys Corporation (NYSE: UIS) today announced Version 2 of its Unisys Secure Private Cloud Solution, the company’s flagship cloud solution for clients’ and cloud service providers’ data centers.
more »
An American blogger has discovered three fake Apple stores operating in Kunming city, China.
more »