[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Disney Down?
- To: fd@xxxxxxxxxx
- Subject: Re: [Full-disclosure] Disney Down?
- From: Mike Sawicki <fifi@xxxxxxx>
- Date: Wed, 17 Aug 2005 14:34:28 -0400
On Wed, Aug 17, 2005 at 11:07:26AM -0700, fd@xxxxxxxxxx wrote:
>
>
>
> On Tue, 16 Aug 2005 sk3tch@xxxxxxxxxx wrote:
> > http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_RBOT.CBQ
> > Symantec: Win32.Zotob.E
> > McAfee: exploit-dcomrpc
> > Kaspersky: Net-Worm.Win32.Small.d
>
> The IRC server this worm uses is 72.20.27.115, #tbp -- does anyone know
> what port? Is the host down from the virus's DoS of the IRC server?
>
It looks like many major ISPs have null routed or prohibited access
to this address.
--
Mike Sawicki (fifi@xxxxxxx)
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/