|
|
|
||||||||
|
|||||||||
|
Latest Ôhreats -
New
worm Zotob.A exploits Windows Plug n Play vulnerability In more detail: As soon as a system is infected, a file called botzor.exe is installed on the system directory and the registry is modified to run this file each time the system boots. Then the virus scans the network for open ports TCP/445. As it finds one it tries to infect the PC. The virus also 'listens' on ports 33333 and 8888 so the virus writer can gain control on the infected PC. If you are already using F-Secure Anti-Virus Client Security, then you are protected from the attacks, since the firewall by default blocks TCP/445 incoming connections. It is strongly recommended, though, to fix this vulnerability by downloading the patch from Microsoft's website (http://www.microsoft.com/technet/security/bulletin/ms05-039.mspx). Also, it is recommended to check that your F-Secure Anti-Virus products
are updated with the latest virus definition databases, since the virus
is detected with version 2005-08-14_1 or newer For
more information, please see:
http://www.europe.f-secure.com/v-descs/zotob_a.shtml
Inter
Engineering is one of the few companies in the world dedicated to Data
Security. Founded in 1991 focused on the fighting of computer Viruses,
through the years the company has developed invaluable knowledge on
numerous highly important Data Security Issues such as Computer Virus
prevention, detection and removal, Content Security, Cryptography,
logical and physical Access Control, Biometrics, Copy Protection and
Data Recovery. Highly responsible Inter Engineering contributes to the
professionalism of data and business integrity protection by means of
activities which range from painstaking research activities up to
solution providing.
. |