Vulnerability Bulletins

Morto Worm Spreading via Remote Desktop Protocol

   
Affected software AmazonWS
 
August 31, 2011 A new Internet worm has been reported that spreads via Microsofts Remote Desk Protocol (RDP). This worm scans an infected hosts subnet for other hosts running RDP and attempts access to them using a pre-configured set of user names (including "administrator") and passwords. According to Microsoft, this worm can be remotely controlled and updated, such that infected hosts may be ordered to perform denial-of-service attacks or other functions. Because of this, the

More info:

https://aws.amazon.com/security/security-bulletins/morto-worm-spreading-via-remote-desktop-protocol/