[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] More about the Trojaned OpenSSH Distribution Files



Initial analysis suggests that code has been added to the package which generates a shell script which, when compiled, tries to contact 203.62.158.32 (web.snsonline.net) on port 6667. It seems that the trojan is executed during build only.

for full article: http://www.theregister.co.uk/content/55/26492.html

aljuhani
aljuhani@xxxxxxxxx