Prevent Online Threats

DDoS.Win32.Boxed

Details
DDoS.Win32.Boxed.a

This is a DDoS (Distributed Denial of Service) Trojan. It conducts a SYN Flood attack on a number of servers in the bootcom.com doman. It works under Windows NT.
When launched, it creates a service named Secure transactions provider, which covertly starts each time the system boots up.
The service launches five threads, each of which sends TCP packets to one of the servers under attack at high frequency, with SYN flags set. This will cause the network to slow noticeably.

Related Posts

  • DDoS.Win32.Kozo
  • Worm.Win32.Rando
  • Win32.Doser.418
  • I-Worm.Fo
  • DDoS.Des
  • Leave a Reply


    Spyware Removal Spyware Protection Tools