RE: [Full-Disclosure] Backdoor not recognized by Kaspersky

From: Aditya, ALD [Aditya Lalit Deshmukh] (aditya.deshmukh_at_online.gateway.technolabs.net)
Date: 03/03/04

  • Next message: Glenn_Everhart_at_bankone.com: "RE: Re[2]: [Full-Disclosure] Backdoor not recognized by Kaspersky"
    To: "Cael Abal" <lists2@onryou.com>, "Gregor Lawatscheck" <gpel@mpex.net>
    Date: Wed, 3 Mar 2004 23:36:09 +0530
    
    

    > 'Password is a long yellow fruit enjoyed by monkeys.'

    which ones ? there are many types of them around here ....
     
    > Leave passworded .zips alone -- take the sensible approach and catch an
    > infected file once it's been extracted.

    that would be the best approach but it would make all the spam to be able to come up to the desktop.
    maybe we will start getting all the spam as zipped attachments...

    how about the smtp server simply rejecting mail from spoofed hosts ? as all the viruses generate spoofed hosts and it is very easy for any smtp server to do a dns lookup on the sending server, if the hostname / ip address do not match reject the message.

    ________________________________________________________________________
    Delivered using the Free Personal Edition of Mailtraq (www.mailtraq.com)

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Glenn_Everhart_at_bankone.com: "RE: Re[2]: [Full-Disclosure] Backdoor not recognized by Kaspersky"

    Relevant Pages

    • RE: [Full-Disclosure] [Fwd: Please contact me !!! 800 453 2287]
      ... I usually just send my spam to trash and move on but this ... valid phone number of a valid company but via ... Full-Disclosure - We believe in it. ... Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: [Full-Disclosure] Fwd: this address is no longer available
      ... and get only 1..2 false positives and 5..10 not-recognized spam messages from ... >> Full-Disclosure - We believe in it. ... > Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: [Full-disclosure] spammer wades into US Presidential race
      ... So, I again ask, why mail full-disclosure if it's a job for the ... The fact that it was spam is ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Google creates SPAM haven
      ... Amazingly, despite years of SPAM being a huge problem, they have now ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • RE: [Full-Disclosure] [Fwd: Please contact me !!! 800 453 2287]
      ... I usually just send my spam to trash and move on but this ... valid phone number of a valid company but via ... Full-Disclosure - We believe in it. ... Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)

  • Quantcast