Are people on this list aware that the Win2000/XP Trojan Deloder-A (nomenclature varies slightly) uses the vnc module explorer.exe? The first sign of infection if you have Xvnc starting automatically as a service is that you will get an error message saying that a VNC server is already running.
For information see: http://www.sophos.com/virusinfo/analyses/w32delodera.html and block port 445 to UDP traffic. _______________________________________________ VNC-List mailing list [EMAIL PROTECTED] http://www.realvnc.com/mailman/listinfo/vnc-list
