Информационная безопасность
[RU] switch to
English Version



Дополнительная информация

  Выполнение кода в Microsoft Windows

  Microsoft Security Bulletin MS08-067 – Critical Vulnerability in Server Service Could Allow Remote Code Execution (958644)

  US-CERT Technical Cyber Security Alert TA08-297A -- Microsoft Windows Server Service RPC Vulnerability

From:Juha-Matti Laurio <juha-matti.laurio_(at)_netti.fi>
Date:4 ноября 2008 г.
Subject:Windows RPC worm (MS08-067) in the wild

The worm-type exploitation has started. More information at
http://www.f-secure.com/weblog/archives/00001526.html

The worm component has reportdly detection name Exploit.Win32.MS08-067.g and the kernel component
Rootkit.Win32.KernelBot.dg, in turn.

Symantec uses Worm category too and the name W32.Wecorl:
http://www.symantec.com/business/security_response/writeup.jsp?docid=2008-110306-
2212-99&tabid=2


Juha-Matti

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server