Security Incidents mailing list archives

Novarg DOS Payload


From: "Mark Blaszczyk" <mark () diversit com au>
Date: Fri, 30 Jan 2004 11:10:25 +0800

Greetings all,

    Just curious to know if anyone has captured the DoS payload of Novarg,
and possible IP addresses which it would be attacking, we run multiple sites
and may expect that some workstations may be still infected.  We run linux
machines at all sites with snort IDS installed and would like to place
appropriate firewalling rules to prevent our links being bombarded.

Kind Regards,

Mark Blaszczyk
www.diversit.com.au

---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: