Hi guys, from a home computer I'm seeing lots of traffic generated from explorer on port 1472 towards the microsoft-ds port, typically on IP addresses starting with 35.xx.xx.xx
It looks like a worm but I could not find any references around and Trend Micro detects nothing. Also there is some hidden process oakklp32.exe which is not shown by the taskmanager but is costantly active, again I could not find anything about it! Ideas? Clues? Thanks, -- Giuseppe _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
