Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Focus-Virus
[Top] [All Lists]

RE: Virus Outbreak Attacking MS05-039

Subject: RE: Virus Outbreak Attacking MS05-039
Date: Mon, 15 Aug 2005 21:02:13 +0200
Of courseâ
I was referring to my servers for starters.
All laptops in our offices are protected and firewalled as well.
Thanks for the concern though!
â



________________________________________
From: jfvanmeter@comcast.net [mailto:jfvanmeter@comcast.net] 
Sent: Monday, August 15, 2005 7:52 PM
To: Meni Milstein; 'Mike'
Cc: focus-virus@securityfocus.com
Subject: RE: Virus Outbreak Attacking MS05-039

what about remote users? how do they connect to the internal network and what 
resources can they access?
 
Laptops, what if I'm a road warrior and coming back to the office, with my 
unpatched and potentially compromised system
 
Just my 2 cents. --John
 
 
 
-------------- Original message -------------- 

As far as I know, if you are firewalled correctly and have your 445 tcp port 
shut to the outside - this thing should NOT be able to get in. 
Am I wrong? 

Meni Milstein. 
http://www.lcs-guides.com 



-----Original Message----- 
From: Mike [mailto:mjcarter@ihug.co.nz] 
Sent: Monday, August 15, 2005 3:41 PM 
To: focus-virus@securityfocus.com 
Subject: Virus Outbreak Attacking MS05-039 

Hi List, 
Yesterday one of my customers was hit hard by what appears to be a variant 
of zotob. 
http://securityresponse.symantec.com/avcenter/venc/data/w32.zotob.b.html 

This one was very (noisy) crashing services.exe and forcing re-boots on 
unpatched WIN2K machines. The boxes we've had a chance to look at were not 
infected, but were unpatched. We hope to have samples today from the same 
network and have a closer look. 

It's time to get patching! 

Regards 
Mike 

Mike 

Information Security and Logistics 
www.infosec.co.nz 








<Prev in Thread] Current Thread [Next in Thread>