Full Disclosure mailing list archives

New Worm equipped with NetSniffer


From: Jesse Valentin <jessevalentin () yahoo com>
Date: Tue, 14 Sep 2004 13:10:08 -0700 (PDT)

Looks like another item to get excited about.. 
 
According to Trend Micro, there is a new worm (not out yet) called : SDBOT.UH 
This puppy is equipped with its own network sniffer to boot. As per Trend, this guy creates several threads for 
sniffing, keylogging and other fun stuff among which is included turning the victim pc into a TFTP server that tries to 
send this out to other systems. Here is the link to the Trend advisory as well as the Security Focus write up.
 
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_SDBOT.UH&VSect=T
 
http://www.securityfocus.com/news/9503
 
Regards,

Jesse

                
---------------------------------
Do you Yahoo!?
Yahoo! Mail Address AutoComplete - You start. We finish.

Current thread: