Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: [Wireshark-users] worm

From: "DENNIS CRAWLEY" <dennis.crawley@xxxxxxx>
Date: Thu, 03 May 2007 17:39:37 -0300
Hi,

This machine reaches the TCPIP XP limit of connections. I've made a wcap
capture and it seems a worm is using the smtp.

Does anybody knows what worm is?. It's refused to be detected by most common
antivirus.


thank you in advance.

Dennis Crawley

Attachment: worm.pcap
Description: Binary data