orifice
Back Orifice Remover 1.0
A program that scans and cleans your computer Back Orifice Server program made by group called Cult of the Dead Cow. BO currently only runs in Windows 95/98. When BO Server running on your system, peo more>>
Back Orifice Eradicator 1.00
Remove the Back Orifice Trojan from your system. more>>
BOshield 1.20
Protect your system from boot viruses. more>>
AntiGen 1.02
A public service from Fresh Software to anyone concerned about the Back Orifice trojan horse. AntiGen will detect, clean, and destroy the Back Orifice trojan horse from your computer, automatically. A more>>
ProPort 2.2
ProPort is a useful program designed to protect your PC from Trojan horses and other attacks. more>>
ProPort 2.2 is a useful program designed to protect your PC from Trojan horses and other attacks.
It is a trojan/nuke protection program. It will monitor local ports for incoming connections or attacks, and optionally disconnect them. ProPort comes with a default list of 300 common trojan ports to monitor (SubSeven, NetBus, Back Orifice, etc), and can be editted by the user.
Major Features:
- Unlimited port monitoring,
- Auto connection kill,
- Port list editing,
- Attack log,
- Remote filter,
- Process manager,
- Autostart method spy,
- Autostart file editing,
- File scanning.
Jellyfish Curious Creatures 1.2
Free screensaver containing 27 high resolution breathtaking images of Jellyfish more>> The free screensaver Jellyfish Curious Creatures was created by RateMyScreensaver.com and contains 27 high resolution images of Jellyfish. Jellyfish are marine invertebrates belonging to the Scyphozoan class, and in turn the phylum Cnidaria. The body of an adult jellyfish is composed of a bell-shaped, jelly producing substance enclosing its internal structure, from which the creature's tentacles are suspended. Each tentacle is covered with stinging cells (cnidocytes) that can sting or kill other animals: most jellyfish use them to secure prey or as a defense mechanism. Others, such as Rhizostomae, do not have tentacles at all. To compensate for its lack of basic sensory organs and a brain, the jellyfish exploits its nervous system and rhopalia to perceive stimuli, such as light or odor, and orchestrate expedient responses. In its adult form, it is composed of 94-98% water and can be found in every ocean in the world. Most jellyfish are passive drifters that feed on small fish and zooplankton that become caught in their tentacles. Jellyfish have an incomplete digestive system, meaning that the same orifice is used for both food intake and waste expulsion. They are made up of a layer of epidermis, gastrodermis, and a thick layer called mesoglea that actually produces a main part of jelly and it separates the epidermis from the gastrodermis. wiki
Screensaver Picture Count: 27
Screensaver Type: Slideshow
Credit: All images in this screensaver fall under one of the following licenses: Creative Commons, Attribution ShareAlike 2.0, public domain, GNU Free Documentation License<<less
Jellyfish have an incomplete digestive system, meaning that the same orifice is used for both food intake and waste expulsion. They are made up of a layer of epidermis, gastrodermis, and a thickLicense:Freeware
Resolve for W32/Avril 1.04
A tool that removes W32/Avril more>> A tool that removes W32/Avril
Resolve is the name for a set of small, downloadable Sophos utilities designed to remove and undo the changes made by certain viruses, Trojans and worms.
They terminate any virus processes and reset any registry keys that the virus changed. Existing infections can be cleaned up quickly and easily, both on individual workstations and over networks with large numbers of computers.
W32/Avril-A is an internet worm that copies itself into the Windows system folder using a random name and sets following registry entry to run itself automatically when Windows starts up:
HKLMSoftwareMicrosoftWindowsCurrentVersion
RunAvril Lavigne - Muse = randomname.exe
The following registry entries are also created:
HKLMSoftwareOvGAvril Lavigne=Done
HKLMSoftwareOvGAvril LavignePSW-Trojan=1
W32/Avril-A drops itself into the KaZaA folder with one of the filenames shown below and creates the file avril-ii.inf.
The worm terminates anti-virus products and drops several copies of itself onto the hard disk with random names.
On the 7th, 11th and 24th of any month, W32/Avril-A will open up Microsoft Internet Explorer to www.avril-lavigne.com, display coloured ellipses in the middle of the screen and display "AVRIL_LAVIGNE_LET_GO - MY_MUSE:) 2002 (c) Otto von Gutenberg" in the top left corner of the screen.
The worm can send cached passwords to a Russian email address.
W32/Avril-A spreads by sending itself to email addresses gathered from DBX, MBX, WAB, HTML, EML, HTM, TBB, SHTML, NCH and IDX files, stored in listrecp.dll.
The emails will have the following characteristics:
Subject line - randomly selected from one of the following 10:
Fw: Avril Lavigne - the best
Fw: Prohibited customers...
Fwd: Re: Admission procedure
Fwd: Re: Reply on account for Incorrect MIME-header
Re: According to Daos Summit
Re: ACTR/ACCELS Transcriptions
Re: Brigade Ocho Free membership
Re: Reply on account for IFRAME-Security breach
Re: Reply on account for IIS-Security
Re: The real estate plunger
Message body - chosen from 3 alternatives:
"Avril fans subscription
FanList admits you to take in Avril Lavigne 2003
Billboard awards ceremony
Vote for Im with you!
Admission form attached below"
"Restricted area response team (RART)
Attachment you sent to is intended to overwrite
start address at 0000:HH4F
To prevent from the further buffer overflow attacks
apply the MSO-patch"
"Microsoft has identified a security vulnerability in
Microsoft? IIS 4.0 and 5.0
that is eliminated by a previously-released patch.
Customers who have applied that patch are already protected
and do not need to take additional action.
Microsoft strongly urges all customers using IIS 4.0 and 5.0
who have not already done so to apply the patch immediately.
Patch is also provided to subscribed list of Microsoft?Tech Support:"
Attached file - one of the following:
AvrilLavigne.exe
AvrilSmiles.exe
CERT-Vuln-Info.exe
Cogito_Ergo_Sum.exe
Complicated.exe
Download.exe
IAmWiThYoU.exe
MSO-Patch-0035.exe
MSO-Patch-0071.exe
Readme.exe
Resume.exe
Singles.exe
Sk8erBoi.exe
Sophos.exe
Transcripts.exe
Two-Up-Secretly.exe
W32/Avril-B is an internet worm which spreads via email. W32/Avril-B is an extended variant of W32/Avril-A. For information on the generic features of W32/Avril-B see the description of W32/Avril-A.
W32/Avril-B differs from W32/Avril-A as follows.
The format of the sent email has changed to the following:
Subject line - one of the following 16:
Fw: Avril Lavigne - CHART ATTACK!
Fw: F. M. Dostoyevsky "Crime and Punishment"
Fw: Redirection error notification
Fwd: Re: Have U requested Avril Lavigne bio?
Fwd: Re: Reply on account for Incorrect MIME-header
Fwd: RFC-0245 Specification requested...
Fwd: RFC-0841 Specification requested...
Re: According to Purges Statement
Re: ACTR/ACCELS Transcriptions
Re: Brigada Ocho Free membership
Re: Ha perduto qualque cosa signora?
Re: IREX admits you to take in FSAU 2003
Re: Junior Achievement
Re: Reply on account for IFRAME-Security breach
Re: Reply on account for IIS-Security Breach (TFTP)
Re: Vote seniors masters - dont miss it!
Message text - may contain one of the following 4 alternatives, but they might be skipped and hence not included:
"AVRIL LAVIGNE - THE CHART ATTACK!
Vote fo4r Complicated!
Vote fo4r Sk8er Boi!
Vote fo4r Im with you!
Chart attack active list:"
"Restricted area response team (RART)
Attachment you sent to is intended to overwrite
start address at 0000:HH4F
To prevent from the further buffer overflow attacks apply the MSO-patch"
"Network Associates weekly report:
Microsoft has identified a security vulnerability in Microsoft?
IIS 4.0 and 5.0 that is eliminated by a previously-released patch.
Customers who have applied that patch are already protected
against the vulnerability and do not need to take additional action.
Microsoft strongly urges all customers using IIS 4.0 and 5.0 who
have not already done so to apply the patch immediately.
Patch is also provided to subscribed list of Microsoft? Tech Support:"
"AVRIL LAVIGNE - THE BEST
Avril Lavignes popularity increases:>
SO: First, Vote on TRL for Im With U!
Next, Update your pics database!
Chart attack active list .>.>"
Attachment exe - one of the following 21:
ADialer.exe
ALavigne.exe
AvrilLavigne.exe
AvrilSmiles.exe
BioData.exe
CERT-Vuln-Info.exe
Cogito_Ergo_Sum.exe
Complicated.exe
EntradoDePer.exe
IAmWiThYoU.exe
MSO-Patch-0035.exe
MSO-Patch-0071.exe
Phantom.exe
Readme.exe
Resume.exe
SiamoDiTe.exe
Sk8erBoi.exe
Sophos.exe
Transcripts.exe
TrickerTape.exe
Two-Up-Secretly.exe
The worm may also attach a TXT, HTM, DOC or HTML file to the email from the Personal folder of the user.
W32/Avril-B tries to update itself from the web and also tries to download a backdoor Trojan (apparently Back Orifice 2K) from the web and run it on the users computer. At the time of this writing the corresponding URL was unavailable. The worm would download the backdoor Trojan into bo2k.exe and set the following registry entry:
HKLMLSoftwareMicrosoftWindowsCurrentVersionRunSocketListener =
bo2k.exe
W32/Avril-B drops a different version of the text file avril-ii.inf and sends the cached passwords to different email addresses.
The payload has also been changed slightly, in that the text displayed in the top left corner of the screen is now "AVRIL_LAVIGNE_LET_GO - MY_MUSE:) VOTE FOR Im With YoU.
W32/Avril-C is a worm that spreads in local networks (see W32/Avril-A for further information) and on the internet by sending emails to email addresses gathered from DBX, MBX, WAB, HTML, EML, HTM, ASP and SHTML files. The sent email has the following characteristics:
Subject line - one of the following:
Fw: IREX Fields Description
Re: ACCELS Awards results for 2003
Re: Avril Fans will rock you
Fw: Avril Lavigne - the best
Re: Antique themes
Re: ACTR/ACCELS Transcriptions
Message text - chosen from the following three options:
"EDUCATIONAL PURPOSE
Avril fans subscription
I wish you the sweetest thing"
"Restricted area response team (RART)
Attachment you sent to is really good :-)
Well done!
SMTP session error #450: service not ready"
"
HotCat/CoolCat 1.0
HotCat is a server application used to send and receive information to/from a... more>> HotCat is a server application used to send and receive information to/from a remote client (CoolCat) using the TCP/IP protocol. The client can this way completely control the remote computer in which the server is installed. HotCat and CoolCat can be compared with other similar applications as NetBus or Back Orifice, but have a more complete set of functions and is a serious administration tool. HotCat and CoolCat run in Windows 95/98/ME/NT/2000.<<less
Jellyfish Curious Creatures Screensaver 1.0
The “Jellyfish Curious Creatures” screensaver contains 27 high resolution images of Jellyfish more>>
Jellyfish are marine invertebrates belonging to the Scyphozoan class, and in turn the phylum Cnidaria.
The body of an adult jellyfish is composed of a bell-shaped, jelly producing substance enclosing its internal structure, from which the creature?s tentacles are suspended.
Each tentacle is covered with stinging cells (cnidocytes) that can sting or kill other animals: most jellyfish use them to secure prey or as a defense mechanism. Others, such as Rhizostomae, do not have tentacles at all.
To compensate for its lack of basic sensory organs and a brain, the jellyfish exploits its nervous system and rhopalia to perceive stimuli, such as light or odor, and orchestrate expedient responses.
In its adult form, it is composed of 94?98% water and can be found in every ocean in the world. Most jellyfish are passive drifters that feed on small fish and zooplankton that become caught in their tentacles.
Jellyfish have an incomplete digestive system, meaning that the same orifice is used for both food intake and waste expulsion.
They are made up of a layer of epidermis, gastrodermis, and a thick layer called mesoglea that actually produces a main part of jelly and it separates the epidermis from the gastrodermis.
HotCat and Coolcat 1.0
Remote control client/server application more>>
NOBO 1.0
A Windows 95/98 program that detects Back Orifice (BO) packets destined to the machine its running on. When such packet is received, NOBO logs the IP address and host name it came from, along with the more>>
Anti-BO 1.4
Detects unauthorized access to your computer and IDs hacker . more>>
NetBus Remover 1.0
Find and remove NetBus. more>>
- Page: 1 of 1
- 1