Security Incidents mailing list archives

Code Red packet dumps.


From: Yotam Rubin <yotam () makif omer k12 il>
Date: Mon, 23 Jul 2001 17:13:06 +0300

Hi,

        Does anyone here have extensive packet dumps of the behavior of 
a host after it has been infected with the Code Red worm? A day's worth
of packets of an infected host would be great, but I welcome anything.

        Regards, Yotam Rubin

----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com


Current thread: