Bots on to RPC Flaw

Image Source: judah.webanalyticsdemystified.com

Many anti virus companies are discovering a new set of exploitation on Microsofts MS08-067. The weakness in the security bulletin which is responsible for the behavior of RPCs or Remote Procedure Calls that are handled in Windows Server service has the workings of becoming a contagious worm. But the companies also cited that, to be able to carry out the exploitation, it needs to team up or packaged with a trijan horse or a bot. This is so because these are the ways the scammers make more money from the code. The worms which are called Rootkit.Win32.KernelBot.dg, W32.Wecorl and a variant of Wecorl are said to be components in building a network of bots. the Gimmiv Trojan is one of the first virus to exploit the MS08-067 vulnerability.

No Comment

Comments are closed.

Bad Behavior has blocked 18 access attempts in the last 7 days.