RE: New SASSER Worm varient ???
"Powell, Dallas L." <[email protected]>
| Newsgroups | gmane.comp.security.intrusions |
|---|---|
| Message-ID | <F9F29760B647064DA35615173403DDF20B651D@tpa-mail1.corp.carltonfields.org> |
For what it is worth to you...I am no longer plaqued by these things. Go take a look at the Cisco CSA product... Nothing, and I mean nothing, gets onto my desktops or laptops now. Also, it identified everything that was there when I rolled it out. What I found that was out there and I didn't now about going across port 80 was amazing. P.s. I don't work for Cisco in any capacity, just another admin trying to survive. Good luck. -----Original Message----- From: [email protected] [mailto:[email protected]] On Behalf Of Carey, Steve T GARRISON Sent: Friday, August 27, 2004 11:40 AM To: [email protected] Subject: [Intrusions] New SASSER Worm varient ??? Anyone seeing a new varient of SASSER using port 4445 as the back door port? I have had systems infected that were patched (and verified). STEVEN T. CAREY LCIRT-R (256) 876-5811 DSN 746-5811 Cell (256) 759-9767 [email protected] _______________________________________________ Intrusions mailing list [email protected] http://www.dshield.org/mailman/listinfo/intrusions _______________________________________________ Intrusions mailing list [email protected] http://www.dshield.org/mailman/listinfo/intrusions