Re: [Full-disclosure] Disney Down?

From: Mike Sawicki (fifi_at_HAX.ORG)
Date: 08/17/05

  • Next message: Micheal Espinola Jr: "Re: It's not that simple... [Was: Re: [Full-disclosure] Disney Down?]"
    Date: Wed, 17 Aug 2005 14:34:28 -0400
    To: fd@ew.nsci.us
    
    

    On Wed, Aug 17, 2005 at 11:07:26AM -0700, fd@ew.nsci.us wrote:
    >
    >
    >
    > On Tue, 16 Aug 2005 sk3tch@sk3tch.net wrote:
    > > http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_RBOT.CBQ
    > > Symantec: Win32.Zotob.E
    > > McAfee: exploit-dcomrpc
    > > Kaspersky: Net-Worm.Win32.Small.d
    >
    > The IRC server this worm uses is 72.20.27.115, #tbp -- does anyone know
    > what port? Is the host down from the virus's DoS of the IRC server?
    >

    It looks like many major ISPs have null routed or prohibited access
    to this address.

    --
    Mike Sawicki (fifi@HAX.ORG)
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/
    

  • Next message: Micheal Espinola Jr: "Re: It's not that simple... [Was: Re: [Full-disclosure] Disney Down?]"
  • Quantcast