RE: New variant. Blast.b

From: Thomas F. Szabo (tszabo_at_diamondtech.net)
Date: 08/13/03

  • Next message: runifoc: "RE: attempt to launch a DCOM server?"
    Date: Wed, 13 Aug 2003 17:01:03 -0400
    To: "Kim, Cameron" <CKim@mdea.com>, <focus-ms@securityfocus.com>
    
    

    Haven't seen this yet, but what I can add is that this is ripping
    through home users right now. If someone releases a variant that
    becomes more malicious than the variants currently in the wild we may
    see some serious problems. I urge everyone to try and get friends,
    family, etc., to patch their systems. All I keep hearing from people is
    "you mean I can just get it? I don't have to open an email to get it?"

    Tom Szabo

    -----Original Message-----
    From: Kim, Cameron [mailto:CKim@mdea.com]
    Sent: Wednesday, August 13, 2003 12:20 PM
    To: focus-ms@securityfocus.com
    Subject: New variant. Blast.b

    http://www.sarc.com/avcenter/venc/data/w32.blaster.b.worm.html

    Any Thoughts? Anyone see this one in their environment?

    Cameron Kim
    Mitsubishi Digital Electronics America

    ------------------------------------------------------------------------

    ---
    Your network firewall and IDS products do not prevent Web application 
    attacks - the most common form of online exploitation- resulting in Web 
    defacement, data theft, sabotage and fraud.
    KaVaDo is the only company that provides a complete suite of Web 
    application security products.
    Download a FREE whitepaper on "Security Policy Automation for Web
    Applications":http://www.securityfocus.com/Kavado-focus-ms
    ------------------------------------------------------------------------
    ---
    ---------------------------------------------------------------------------
    Your network firewall and IDS products do not prevent Web application 
    attacks - the most common form of online exploitation- resulting in Web 
    defacement, data theft, sabotage and fraud.
    KaVaDo is the only company that provides a complete suite of Web 
    application security products.
    Download a FREE whitepaper on "Security Policy Automation for Web
    Applications":http://www.securityfocus.com/Kavado-focus-ms
    ---------------------------------------------------------------------------
    

  • Next message: runifoc: "RE: attempt to launch a DCOM server?"

    Relevant Pages

    • RE: What the heck is this msblast.exe
      ... Your network firewall and IDS products do not prevent Web application ... Download a FREE whitepaper on "Security Policy Automation for Web ...
      (Focus-Microsoft)
    • RE: What the heck is this msblast.exe
      ... Send data on TCP port 135 that may exploit the DCOM RPC vulnerabilty to ... the worm to be download and run using the program tftp. ... Your network firewall and IDS products do not prevent Web application ... Download a FREE whitepaper on "Security Policy Automation for Web ...
      (Focus-Microsoft)
    • RE: New variant. Blast.b
      ... Subject: New variant. ... > Your network firewall and IDS products do not prevent Web ... > Download a FREE whitepaper on "Security Policy Automation for Web ...
      (Focus-Microsoft)
    • RE: What the heck is this msblast.exe
      ... Your network firewall and IDS products do not prevent Web application ... KaVaDo is the only company that provides a complete suite of Web ... Download a FREE whitepaper on "Security Policy Automation for Web ...
      (Focus-Microsoft)
    • Re: MS03-029 ?-Download link
      ... Your network firewall and IDS products do not prevent Web application ... KaVaDo is the only company that provides a complete suite of Web ... Download a FREE whitepaper on "Security Policy Automation for Web ...
      (Focus-Microsoft)