Security Incidents mailing list archives

Re: Code Red -- AGAIN?!?


From: Chip McClure <vhm3 () hades dnsalias net>
Date: Thu, 29 Nov 2001 16:43:10 -0800 (PST)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I haven't had a CR scan in a few days. On both my home subnet of
24.219.x.x and a few of the class C address ranges I admin (216.52.x.x). I
still see the occasional Nimda, though.

- -----
Chip McClure
Sr. Unix Administrator
GigGuardian, Inc.

http://www.gigguardian.com/
- -----

On Thu, 29 Nov 2001, Steve wrote:

Is anyone else other than me seeing another increase of code red scans and
of course the infected emails?  This morning alone I had 38 different
infected messages stopped at my email gateway and looking at my web logs,
there are numerous scans going on as well.


----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management
and tracking system please see: http://aris.securityfocus.com



-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.8
Comment: Made with pgp4pine 1.76

iQA/AwUBPAbWIYxq/3tb9j7EEQIXAgCeP0B1T90Phrv+c+ML+y8JJ+OsZsAAn2EJ
1zmpV4T850Dsgz7rYZPJW4EP
=8JPf
-----END PGP SIGNATURE-----



----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com


Current thread: