Can anyone explain me what this application is used for
and what does it do?
mslaugh.exe
- it is transmiting some data or just opens a port all the
time. the port is 135. The remote adress is 66.11.143.***
Then a process name "system" transmits Remote Procedure
Call (TCP) through random ports, but to an ip: 81.36.**.***
Then "NetBIOS" (UDP) transmits something called
NetBIOS Traffic through random ports also.
Then what is ICMP Traffic for Echo Request?

Thanks

mslaugh.exe , system ..... by sgopus

sgopus
Wed Dec 17 22:38:36 CST 2003

it's part of the blaster virus, welcome to the world of
the infected...



>-----Original Message-----
>Can anyone explain me what this application is used for
>and what does it do?
>mslaugh.exe
>- it is transmiting some data or just opens a port all
the
>time. the port is 135. The remote adress is 66.11.143.***
>Then a process name "system" transmits Remote Procedure
>Call (TCP) through random ports, but to an ip:
81.36.**.***
>Then "NetBIOS" (UDP) transmits something called
>NetBIOS Traffic through random ports also.
>Then what is ICMP Traffic for Echo Request?
>
>Thanks
>.
>

Re: mslaugh.exe , system ..... by mae

mae
Wed Dec 17 22:56:35 CST 2003

read this
http://security.depaul.edu/doc/tutorials/nachiblast.shtml

mae
---------------------------------------------------
"LAN" <anonymous@discussions.microsoft.com> wrote in message =
news:02bc01c3c51b$21096ac0$a401280a@phx.gbl...
| Can anyone explain me what this application is used for=20
| and what does it do?
| mslaugh.exe=20
| - it is transmiting some data or just opens a port all the=20
| time. the port is 135. The remote adress is 66.11.143.***
| Then a process name "system" transmits Remote Procedure=20
| Call (TCP) through random ports, but to an ip: 81.36.**.***
| Then "NetBIOS" (UDP) transmits something called=20
| NetBIOS Traffic through random ports also.=20
| Then what is ICMP Traffic for Echo Request?
|=20
| Thanks