>Does anyone know which service running on TCP port 6667?
>
>regards,
>apisit.
>
At least the trojan WinSatan uses TCP port 6667 by default, possibly also
the trojan ScheduleAgent. And not to forget some other 60 IRC trojans of
various kinds. Many of uses IRC to broadcast passwords or logs captured by
keyloggers, but there are also RATs and others as well.
Cheers,
Joakim
Joakim von Braun phone +46-(0)8-428 95 05
von Braun Consultants cell phone +46-(0)709-56 16 42
Kristinehovsgatan 14
SE-117 29 Stockholm, SWEDEN
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]