RE: TROJ_VOTE.A (WTC.EXE)

From: Fisher, Lee (Lee_Fisherat_private)
Date: Mon Sep 24 2001 - 15:12:32 PDT

  • Next message: Fulton L. Preston Jr.: "RE: Tracking down the still infected hosts"

    We ( McAfee ) are aware of this one...
    
    http://vil.nai.com/vil/virusSummary.asp?virus_k=99212
    
    Low risk.
    
    Lee Fisher
    Global Best Practices Team
    AntiVirus and Information Security Specialist
    Member of the AVERT
    For McAfee/Dr Solomon's Anti Virus Technologies
    
    PGP FingerPrint:7323 57AD D0E5 97E4 D173  E6F9 341F BA79 760A 3DFC
    
    
    -----Original Message-----
    From: bonkat_private [mailto:bonkat_private]
    Sent: 24 September 2001 22:26
    To: incidentsat_private
    Subject: TROJ_VOTE.A (WTC.EXE)
    
    
    
    Although it's just been discovered today, both Symantec and Trend have
    updated definitions for it.  I checked Symantec's, McAfee's and Trend's
    sites for the information.
    
    For Symantec:
    
    http://securityresponse.symantec.com/avcenter/venc/data/w32vote.aat_private
    
    Trend:
    
    http://www.antivirus.com/vinfo/virusencyclo/default5.asp?VName=TROJ_VOTE.A
    
    
    ================================================
    Travis
    Email: Bonkat_private | Bonkat_private
    ================================================
    
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    



    This archive was generated by hypermail 2b30 : Mon Sep 24 2001 - 15:18:14 PDT