[Dshield] Sony: You dont reeeeaaaally want to uninstall, do you?

Robert Nelson nelsrob at mts.net
Fri Nov 11 03:21:16 GMT 2005


According to the little I've seen, yes it is.

Symantec has it listed as Backdoor.Ryknos, aka BKDR_BREPLIOBOT.C [Trend
Micro], Ryknos.A [Panda Software], W32/Ryknos.A [Norman], Troj/Stinx-E
[Sophos].
http://securityresponse.symantec.com/avcenter/venc/data/backdoor.ryknos.html

There is a variant also noted, Backdoor.Ryknos.B aka Troj/Stinx-F [Sophos],
BKDR_BREPLIBOT.D [Trend Micro], Breplibot.C [F-Secure].

Didn't take them long, now did it?

Robert

-----Original Message-----
From: list-bounces at lists.dshield.org [mailto:list-bounces at lists.dshield.org]
On Behalf Of Willy, Andrew
Sent: November 10, 2005 10:05 AM
To: 'General DShield Discussion List'
Subject: Re: [Dshield] Sony: You dont reeeeaaaally want to uninstall,do y
ou?


Seeing a few reports of a trojan using DRM.  Legitimate?

Andrew




More information about the list mailing list