Re: [Full-Disclosure] New Worm in the wild

From: Andy (andy.van.hoof_at_pandora.be)
Date: 08/19/03

  • Next message: Andreas Gietl: "Re: [Full-Disclosure] SCO Web Site Vulnerable to Slapper?"
    To: <dbtrino2@hush.com>
    Date: Tue, 19 Aug 2003 17:13:53 +0200
    
    

    Hello,

    I can, i got 2 clients who are infected.

    seems to be w32.sobig.f

    cheers,
    andy
    On Tuesday 19 August 2003 16:30, dbtrino2@hush.com wrote:
    > Hi list,
    >
    > we see a lot of ping traffic and have a lot of users who report of mails
    > with attachements ~74KB which have not been send by the 'sender'.
    >
    > Anyone can confirm this?
    >
    > cheers
    > dbtrino
    >
    >
    >
    >
    > Concerned about your privacy? Follow this link to get
    > FREE encrypted email: https://www.hushmail.com/?l=2
    >
    > Free, ultra-private instant messaging with Hush Messenger
    > https://www.hushmail.com/services.php?subloc=messenger&l=434
    >
    > Promote security and make money with the Hushmail Affiliate Program:
    > https://www.hushmail.com/about.php?subloc=affiliate&l=427
    > _______________________________________________
    > Full-Disclosure - We believe in it.
    > Charter: http://lists.netsys.com/full-disclosure-charter.html

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Andreas Gietl: "Re: [Full-Disclosure] SCO Web Site Vulnerable to Slapper?"

    Relevant Pages

    • RE: Dhcp security
      ... Setting up a 802.1x wired network requires: ... vendors, including Cisco, provide solutions to ensure that only properly ... trust agent collects security state information from multiple security ... software clients, such as anti-virus clients, and then communicates this ...
      (Focus-Microsoft)
    • Re: [Full-Disclosure] SSH vs. TLS
      ... > frowned upon by network ops and security. ... > - There must be a secure means by which all server keys are distributed to ... > appropriate ssh clients. ... > servers from using expired keys. ...
      (Full-Disclosure)
    • Re: Same source port queries dropped by ServerIron load balancer
      ... It's really not the job of a load balancer or server to force clients to ... use good security practices. ... such that enforcing good security practices is "not my job, man", then ... firewall and load balancer. ...
      (comp.protocols.dns.bind)
    • Re: Innovative ways of teaching security
      ... web site and when "teaches security". ... Maybe you're reading the wrong books, Andy, and putting ... the "trojan" first, but to look at the methodology each ... Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts! ...
      (Security-Basics)
    • Re: Same source port queries dropped by ServerIron load balancer
      ... any device that responds to DNS requests. ... It's really not the job of a load balancer or server to force clients to ... use good security practices. ... they can change DNS servers, ...
      (comp.protocols.dns.bind)