|
||
5/11: Rbot-ACH Worm Spreads Via Shares W32/Rbot-ACH is a Windows network worm that attempts to spread via network shares. The worm contains backdoor functions that allows unauthorized remote access to the infected computer via IRC channels while running in the background.
The worm spreads to network shares with weak passwords and also by using the following operating system vulnerabilities:
LSASS (MS04-011) The worm may also spread via backdoors left open by other Trojans and worms.
The following patches for the operating system vulnerabilities exploited by W32/Rbot-ACH can be obtained from the Microsoft website:
MS04-011 More information can be found at Sophos page.
|
||
|