[Dshield] sysldr32.exe

J. Foobar jfoobar1 at yahoo.com
Sun Oct 27 20:37:32 GMT 2002


Looks like it is likely W32/Gaobot.worm (a.k.a.
Backdoor.Agobot.01).  

http://vil.nai.com/vil/content/v_99756.htm

--- melvin smith <Foxtail at emailaccount.com> wrote:
> >From  :
> "Bob Savage" <bsavage at rnr-inc.com>
> 
> To  :
> <list at dshield.org>
> 
> Date  :
> Fri, 25 Oct 2002 11:10:56 -0500
> 
> Subject  :
> [Dshield] Trojan-like behavior
> 
> The discussion on "Friendly Greeting" reminds me of
> something I found on
> a family members' machine a few weeks ago.
> 
> Do any of these names mean anything to anybody in
> this group?
> 
> agobot
> sysldr32.exe
> spoinggg.exe
> --------------------------------------------
> Three days ago I found the same type called
> winver32.exe and an associated file called litmus
> and deleted them.
>                                 Mel.
> 
>
_____________________________________________________________
> A free email account your friends will never forget!
> Get YOURNAME at EmailAccount.com  at
> http://www.emailaccount.com/
> 
>
_____________________________________________________________
> Select your own custom email address for FREE! Get
> you at yourchoice.com w/No Ads, 6MB, POP & more!
> http://www.everyone.net/selectmail?campaign=tag
> 
> _______________________________________________
> Dshield mailing list
> Dshield at dshield.org
> To change your subscription options (or
> unsubscribe), see:
http://www.dshield.org/mailman/listinfo/list


__________________________________________________
Do you Yahoo!?
Y! Web Hosting - Let the expert host your web site
http://webhosting.yahoo.com/




More information about the list mailing list