Full Disclosure mailing list archives

Re: New MyDoom exploiting IFRAME


From: Danny <nocmonkey () gmail com>
Date: Tue, 9 Nov 2004 12:29:31 -0500

On Wed, 10 Nov 2004 00:45:12 +1300, Nick FitzGerald
<nick () virus-l demon co uk> wrote:
Berend-Jan Wever wrote:

There's a new MyDoom variant exploiting the IFRAME issue ...

In fact, it seems there's a reasonable chance many (most?) AV vendors
will actually (re-)name this Bofra as it is "sufficiently different"
from Mydoom as to seem worthy of a new family name.  There are three
known variants already.

Note todays entry here: http://www.f-secure.com/weblog/ 

...D

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: