Wireshark mailing list archives

Re: W32.licum capture


From: "David H. Lipman" <DLipman () Verizon Net>
Date: Mon, 22 Feb 2010 19:20:57 -0500

From: "Tal Bar-Or" <tbaror () gmail com>

| Hello all,

| I looking for w32.licum virus capture or Win32.Small.gl ,
| Virus.Win32.Tenga.a , BackDoor-CTM , W32/Gael.worm.a , W32/Tenga-A ,
| PE_TENGA.A
| We have kind of emergency in our network and we need to trap  computer that
| don't have AV installed on it and trying to spread this virus.
| if someone know about filter or capture of those mention virus that would be
| helpful

| Thanks


http://www.symantec.com/security_response/writeup.jsp?docid=2005-071316-2523-99
Discovered: July 13, 2005
Updated: February 13, 2007 12:42:09 PM

What do you have ?
How do you know you have this ?

This is old and should have been prevented.

Why do you not have anti virus installed ?

Wireshark isn't really going to help you.  You need to really examine EVERY SINGLE node 
and make sure a managed anti virus product is properly installed.

-- 
Dave
http://www.claymania.com/removal-trojan-adware.html
Multi-AV - http://www.pctipp.ch/downloads/dl/35905.asp 



___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe


Current thread: