markblair
08-12-03, 07:22 AM
I didn't see this posted anywhere else so I thought I'd add it. There's a new virus hitting networks everywhere today. Symantec has it listed as W32.Blaster.Worm while others have called it 'LovSan'. From what I've read, this is a worm that exploits the DCOM RPC vulnerability using TCP port 135. It attempts to download and run the msblast.exe file.
Further information can be found at the below Symantec link:
http://securityresponse.symantec.com/avcenter/venc/data/w32.blaster.worm.html
Further information can be found at the below Symantec link:
http://securityresponse.symantec.com/avcenter/venc/data/w32.blaster.worm.html