VIRUS NAME: BSD/Exploit-Autofsd
Trojan Characteristics
The BSD/Exploit-Autofsd trojan was included inside a virus collector set that was sent to AVERT. The exploit code has not been encountered "in the wild".
This code is meant for the Unix BSD flavor.
It is a remote exploit for rpc.autofsd.
It will attempt to put a root shell on tcp port 530.
Comments inside the source indicate that the exploit was written back in 2000.
Usually Unix malware is very flavor/version/kernel specific, newer versions and/or security updates address many exploits.
|