Re: Firedaemon Application

From: Chris Stoermer (stoermer@NOSPAM.unt.edu)
Date: 07/26/02


From: Chris Stoermer <stoermer@NOSPAM.unt.edu>
Date: Fri, 26 Jul 2002 13:22:59 -0700


Howdy!

This is a common piece of an exploit called Movie World. Usually, the
exploit is carried out under the winnt\vm32 or winnt\config directory.

It loads a simple IRC bot, ftp bot, and maybe a program to snoop around
for other "weak" machines. Look for zipped or rar'd movies on the
exploited machines.

In all cases, we had the machine rebuilt and required the user to change
passwords.

--Chris

"jclaudias Claudias" <jclaudias@ssw.umaryland.edu> wrote in
news:16ca01c234a8$36cb2bf0$37ef2ecf@TKMSFTNGXA13:

> Hey there,
>
> does anyone know what firedaemon is and how to remove it
> from a w2k server. Somehow it just showed up on one of my
> servers. I read that it allows u to install apps as
> services. Do u think it may be a hacker.
>
>
> John



Relevant Pages

  • Re: Encoding "Windows Media 9 Professional" gives 0x8007000E WM9 is OK
    ... on a development server running Windows 2003 Server Enterprise Edition. ... Neither of them are able to encode the movie. ... Microsoft Windows Media Encoder Command Line Script Utility ...
    (microsoft.public.windowsmedia.encoder)
  • Re: How do I record ALL activity on Server connection via RDP??
    ... server in a video format and that is all. ... didn't got an idea that the movie of his activity is recorded. ... The main reason for this difference is that ObserveIT not only records ... Other recording tools function like a dummy security camera, ...
    (microsoft.public.windows.server.sbs)
  • Re: Ending Of "War Of The Worlds"
    ... and what does the soldier say ... The machines had a shield ... Spielberg's movie uses the same visual as Pal's to show the "invisible" ...
    (rec.arts.movies.current-films)
  • Re: Last Action Hero, Bad Girls, Mario Andretti, and SF2 pins thrown offroof! - TNT Amusements
    ... Jackie Chan destroying classic pinball machines. ... Can we all agree to also boycott Jackie Chan movies and all of ... Let's not forget the Tommy movie. ... good Gorgar glass for $25 last year to save a game missing the glass. ...
    (rec.games.pinball)
  • Re: The future of pinball?
    ... have an assortment of just about everything else but no pinball. ... Now if there were redemption pins, ... --Stern get licensing to their holiday movie each year. ... coding for both machines ready around the same time. ...
    (rec.games.pinball)