Nmap Development mailing list archives

Re: article about Conficker says nmap can be used to discover it


From: Michael Pattrick <mpattrick () rhinovirus org>
Date: Mon, 30 Mar 2009 13:45:23 -0400

On Mon, Mar 30, 2009 at 1:23 PM, DePriest, Jason R.
<jrdepriest () gmail com> wrote:
The Register has a story here:
http://www.theregister.co.uk/2009/03/30/conficker_signature_discovery/
that claims nmap has "signatures" coming soon to sniff out Conficker
infected systems.

I can't find anything in the nmap mailing list archives to validate this.

Who's been working on it?  Is it going to be an NSE script?

I am trying to make one right now, but no promises on how soon it will
be out as I'm new to the whole SMB DCERPC thing. And I cant say
whether or not anyone else is working on it.

-- 
Michael Pattrick
http://www.rhinovirus.org/math

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: