1. Home
  2. Computing & Technology
  3. Antivirus Software
photo of Mary Landesman

Mary's Antivirus Software Blog

By Mary Landesman, About.com Guide to Antivirus Software since 2000

Zindos: MyDoom.O's 2nd stage attack

Tuesday July 27, 2004
The backdoor left in place by MyDoom.O infections appears to be deliberately targeted and exploited by the same author, via the newly discovered Zindos worm. The new worm seeks out the open port 1034 ala MyDoom.O, then gets uploaded and executed. Once settled onto the system, Zindos launches a Distributed Denial of Service (DDoS) attack against the microsoft.com website. To do so, Zindos queries the local DNS server for the IP address of microsoft.com, then begins sending GET requests to the site via TCP port 80.

Comments

No comments yet. Leave a Comment

Leave a Comment

Line and paragraph breaks are automatic. Some HTML allowed: <a href="" title="">, <b>, <i>, <strike>

Explore Antivirus Software

More from About.com

  1. Home
  2. Computing & Technology
  3. Antivirus Software

©2008 About.com, a part of The New York Times Company.

All rights reserved.