on infected machine, it only ***LISTENS*** to port 31xx. for PCs behind a simple NAT firewall, tcp connection can not be initiated from outside, except those exported services.
it would be more dangerous if the worm initiate connection to some server on the internet (but that way it would be really easy to catch the virus makers)
这后门没那么厉害
本帖于 2004-02-06 15:24:48 时间, 由普通用户 old-cotton 编辑