Re: Code Red -- AGAIN?!?

From: Chip McClure (vhm3at_private)
Date: Thu Nov 29 2001 - 16:43:10 PST

  • Next message: NESTING, DAVID M (SBCSI): "RE: Re[2]: Strange Traffic.."

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    I haven't had a CR scan in a few days. On both my home subnet of
    24.219.x.x and a few of the class C address ranges I admin (216.52.x.x). I
    still see the occasional Nimda, though.
    
    - -----
    Chip McClure
    Sr. Unix Administrator
    GigGuardian, Inc.
    
    http://www.gigguardian.com/
    - -----
    
    On Thu, 29 Nov 2001, Steve wrote:
    
    > Is anyone else other than me seeing another increase of code red scans and
    > of course the infected emails?  This morning alone I had 38 different
    > infected messages stopped at my email gateway and looking at my web logs,
    > there are numerous scans going on as well.
    >
    >
    > ----------------------------------------------------------------------------
    > This list is provided by the SecurityFocus ARIS analyzer service.
    > For more information on this free incident handling, management
    > and tracking system please see: http://aris.securityfocus.com
    >
    >
    
    -----BEGIN PGP SIGNATURE-----
    Version: PGP 6.5.8
    Comment: Made with pgp4pine 1.76
    
    iQA/AwUBPAbWIYxq/3tb9j7EEQIXAgCeP0B1T90Phrv+c+ML+y8JJ+OsZsAAn2EJ
    1zmpV4T850Dsgz7rYZPJW4EP
    =8JPf
    -----END PGP SIGNATURE-----
    
    
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    



    This archive was generated by hypermail 2b30 : Thu Nov 29 2001 - 20:02:45 PST