Da nije ovo?
Radar Alert LEVEL 2
NAME: Slammer
ALIAS: Sapphire, Worm.SQL.Helkern, SQLSlammer
SIZE: 376
This worm does not infect typical end user machines at all: it only infects computers running Microsoft SQL Server 2000 or MSDE 2000. End users might only notice this worm because of network slugginess. This worm is not a massmailer: it does not send any e-mails.
The worm only spreads as an in-memory process: it never writes itself to the hard drive. In this sense it is similar to the Code Red from July 2001.
The worm uses UDP port 1434 to exploit a buffer overflow in MS SQL server. Close down this port on your firewall unless you really need to have your SQL servers visible to the world.
As the worm does not infect any files, an infected machine can be cleaned by simply rebooting the machine. However, it will soon get reinfected if the machine is connected to the network without applying relevant patches for MS SQL Server.
For patch information, see:
http://www.microsoft.com/security/slammer.asp
http://www.microsoft.com/technet/security/bulletin/MS02-061.asp
http://www.microsoft.com/technet/security/bulletin/MS02-039.asp
Mislim da je ovaj worm relativno svez, pojavio se negde od februara ove godine.