Welcome to the SecAware blog

I spy with my beady eye ...

3 Mar 2007

Bot wars

A family of worms known variously as SDBOT, RINBOT, LOXBOT and DELBOT makes rude references in the code to the information security and antivirus companies trying to stamp it out. They spread by guessing/brute forcing simplistic passwords on network shares, or via Instant Messaging. The payload is a backdoor that allows hackers to remote-control compromised machines using IRC (Internet Relay Chat), generally to launch Distributed Denial of Service attacks.

Despite claims of novelty by CNN, these worms have been around for years.

More malware links

No comments:

Post a Comment