![]() |
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.
|
|
google unix.com
|
|||||||
| Forums | Register | Forum Rules | Links | Albums | FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
| Malware Advisories (RSS) Malware Security Advisories Via RSS |
More UNIX and Linux Forum Topics You Might Find Helpful
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Worm_ircbot.akz | iBot | Malware Advisories (RSS) | 0 | 01-26-2008 01:30 AM |
| Worm_ircbot.alt | iBot | Malware Advisories (RSS) | 0 | 01-26-2008 01:30 AM |
| Worm_ircbot.sn | iBot | Malware Advisories (RSS) | 0 | 01-23-2008 12:30 AM |
| Worm_ircbot.el | iBot | Malware Advisories (RSS) | 0 | 01-04-2008 11:30 AM |
| Worm_ircbot.arb | iBot | Malware Advisories (RSS) | 0 | 12-28-2007 01:30 AM |
![]() |
|
|
LinkBack | Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
|
|
|||||
|
Worm_ircbot.aqm
This worm may arrive via network shares. It may be downloaded unknowingly by a user when visiting malicious Web sites.
It drops a copy of itself. It creates registry entries to enable its automatic execution at every system startup. It disables Windows Firewall settings. It drops copies of itself in all removable drives and in specific drives. It drops an AUTORUN.INF file to automatically execute dropped copies when the drives are accessed. It connects to IRC servers. It joins IRC channels. It opens a random port to allow a remote user to connect to the affected system. Once a successful connection is established, the remote user executes commands on the affected system. It accesses Web sites to download files. As a result, malicious routines of the downloaded files are exhibited on the affected system. More... |
![]() |
| Bookmarks |
| Thread Tools | Search this Thread |
| Display Modes | Rate This Thread |
|
|