Full Disclosure mailing list archives

Virus Outbreak Attacking MS05-039 WIN2K


From: "Mike" <mjcarter () ihug co nz>
Date: Tue, 16 Aug 2005 01:43:15 +1200

Hi List,
Yesterday one of my customers was hit hard by what appears to be a variant
of zotob.
http://securityresponse.symantec.com/avcenter/venc/data/w32.zotob.b.html

This one was very (noisy) crashing services.exe and forcing re-boots on
unpatched WIN2K machines. The boxes we've had a chance to look at were not
infected, but were unpatched. We hope to have samples today from the same
network and have a closer look.

It's time to get patching!

Mike 

Information Security and Logistics
www.infosec.co.nz


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: