|12 Jan 2011||#1|
Win32/Lethic is a trojan
Win32/Lethic is a trojan that communicates with a remote server to distribute spam. Variants of Lethic install executable files with varied file names such as “shelldm.exe” or “xcllsx.exe”. The malware loads as a process when Windows starts.
The trojan establishes a connection to remote servers using varied TCP ports, such as 1430, 8900, 8090 and so on. It communicates with servers with names such as “dqglobex.com”, “verywellhere.cn”, “iamnothere.cn” among others. Once connected, the trojan allows unauthorized use of the affected computer, including distributing spam.
Forefront Online Protection for Exchange (FOPE) consists of layered technologies to actively help protect businesses’ inbound and outbound e-mail from spam, viruses, phishing scams, and e-mail policy violations.
|My System Specs|
|Similar help and support threads for2: Win32/Lethic is a trojan|
|Win32/fynlovski.aa trojan problem||System Security|
|Removing Win32/Malagent Trojan - The Easiest Way||System Security|
|trojan downloader:win32/cutwail.ba HELP!||System Security|
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd
All times are GMT -5. The time now is 10:10 AM.