[unisog] another malware-based rogue DHCP server (not Trojan.Flush.M)

Irwin Tillman irwin at princeton.edu
Wed Mar 25 15:16:37 GMT 2009

On March 15 2009, I wrote:

> I want to alert you to another malware-based rogue DHCP server,
> one that I have not yet seen reported.  (This is not Trojan.Flush.M.)
> ...

It is possible (though not yet confirmed) that the malware
responsible is "Win32/Tidserv.G", described by on March 23 2009 
by the (Italian language version of the) ESET NOD32 Antivirus web site:


More information about the unisog mailing list