Handler on Duty: Guy Bruneau
Threat Level: green
Loading...
|
|
URL |
---|
Samba - Buffer Overrun, HP Remote Command Execution, Top 15 Worms, Hosts File, SasserDabber Activity |
Submitted By | Date |
---|---|
Comment | |
2004-10-28 05:52:40 | |
dabber variant scans for this port | |
2004-06-21 17:07:13 | |
W32.Sasser.G Discovered on: June 10, 2004 Last Updated on: June 11, 2004 02:58:37 PM http://securityresponse.symantec.com/avcenter/venc/data/w32.sasser.g.html Uses different port numbers, used by FTP server and the remote shell: 1023 and 1022. Has an updated routine for finding vulnerable computers. W32.Sasser.G sends an ICMP echo request before attempting to make a connection. This change may prevent the worm from properly executing on Windows 2000 systems. W32.Sasser.G can run on, but not infect, Windows 95/98/Me computers. Although these operating systems cannot be infected, they can still be used to infect vulnerable computers. | |
Morten Skeldal | 2004-06-15 17:24:04 |
Sasser.E installs an FTP-server on this port | |
2004-05-24 04:13:16 | |
Sasser.E http://securityresponse.symantec.com/avcenter/venc/data/w32.sasser.e.worm.html |
CVE # | Description |
---|