Re: Analysis/decompilation of main() of the msblast worm

From: Helmut Hauser (helmut.hauserat_private)
Date: Thu Aug 14 2003 - 10:14:11 PDT

  • Next message: Mariusz Woloszyn: "Re: Buffer overflow prevention"

    
     ('binary' encoding is not supported, stored as-is)
    In-Reply-To: <001a01c362a4$d523d600$b100a8c0@penetrator>
    
    Sorry Dennis but the regards must go to E-Eye Security:
    
    http://www.eeye.com/html/Research/Advisories/Blaster_Analysis.txt
    (Done on August 12, 2003) btw very nice Disasm :)
    
    There is another RPC Leak which is not fixed by the Microsoft Patch.
    
    
    Helmut Hauser
    Sysytemadministrator
    Intraplan Consult GmbH
    



    This archive was generated by hypermail 2b30 : Thu Aug 14 2003 - 11:41:41 PDT