Research Win32/Slenfbot

From Botnets.fr
Revision as of 17:38, 4 March 2012 by Eric.freyssinet (talk | contribs) (Page créée avec « {{Publication |Image= |Legend= |Document= |Licence= |Video= |Link=http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?name=Win32%2fSlenfbot |Author=... »)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

(Publication) Google search: [1]

Research Win32/Slenfbot
Botnet
Malware Slenfbot
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2011 / 16 août 2008
Editor/Conference Microsoft
Link http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?name=Win32%2fSlenfbot (Archive copy)
Author Hamish O'Dea, David Wood
Type

Abstract

Win32/Slenfbot is a worm that can spread via instant messaging programs, which may include MSN Messenger, Yahoo Messenger and Skype. It may also spread via removable drives or exploiting the MS06-040 vulnerability. This worm spreads automatically via shares, but must be ordered to spread via exploit or instant messaging by a remote attacker. The worm also contains backdoor functionality that allows unauthorized access to an affected machine.

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2011BFR909,
   editor = {Microsoft},
   author = {Hamish O'Dea, David Wood},
   title = {Research Win32/Slenfbot},
   date = {Error: Invalid time.},
   month = Error: Invalid time.,
   year = {2011},
   howpublished = {\url{http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?name=Win32%2fSlenfbot}},
 }