OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[Full-Disclosure] New virus?

From: Matthew Burling (matthewbaccelrys.com)
Date: Wed Mar 02 2005 - 10:05:06 CST


Floods the network with DCOM packets

Infected files include:

C:\windows\system32\dxmsrv.exe
C:\windows\system32\winmes.exe

These aren't yet detected by Symantec 1/3/2005 rev. 21

Doesn't infect a fully patched Windows PC

Does anyone have any ideas?

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html