Virus_slapper worm admin traffic

 

Code: p525

Severity: Warning

 

Description: This event is generated when a web server infected by the slapper worm attempts to send traffic via a communication channel.

Impact: Remote access and potentially denial of service. A slapper worm infection indicates a successful compromise of the host. A communication channel established between infected hosts can be used as a vehicle for a distributed denial of service attack of a target host or network.

Corrective: Apply the appropriate patch or upgrade to the most current version of OpenSSL.