msblast.exe --> DDoS against windowsupdate.com (research)

From: Sekurity Wizard (s.wizardat_private)
Date: Wed Aug 13 2003 - 12:03:17 PDT

  • Next message: David Vincent: "new msblaster on the loose?"

    Hi all,
      Thought I'd do some research into this little hypothesis we've all been seeing, what will happen on the 16th!?  Well, I've set up a named server (logging ALL queries into it) and an infected Win2k box (ran msblast.exe on it) into the same hub...and then set the date to the 16th......much to my surprise, NOTHING happened.  Literally, nothing.  No scanning for port 135, no DNS storms, no DDoS packets - nothing...what did I do wrong or...what does this mean?
    
    ./Wiz
    
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    



    This archive was generated by hypermail 2b30 : Wed Aug 13 2003 - 18:03:06 PDT