W32/Trinoo - Denial of Service (DDoS) attack program

W32/Trinoo is a 32-bit Intel-based version of a Denial of Service (DDoS) attack program previously published as source code. AVERT has assigned it a LOW risk assessment. However, new infections are being reported, and AVERT is watching it closely.

W32/Trinoo arrives as an email trojan attachment. When run, it will install itself on the host system, and it will run as a service at the next Windows startup. It will then listen for commands on a pre-designated UDP port.

This trojan does not present a serious risk to individual users at this time, and no alert is being posted. However, AVERT and McAfee.com want to make our users aware that this trojan is out there, and that it is, in principle, capable of launching a Denial of Service attack from an infected machine.

McAfee.com

________________________Virus Fixes________________________

Find out more about this virus. Click here to go to the W32/Trinoo Help Center.
-> http://www.mcafee.com/viruses/trinoo/