Sobig.f/w32.sobig.f@mm/ http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_SOBIG.F http://securityresponse.symantec.com/avcenter/venc/data/w32.sobig.fat_private http://us.mcafee.com/virusInfo/default.asp?id=description&virus_k=100561 Standard Sobig Worm, with a termination of 10SEPT. Wants to download files and execute, connects to NTP servers to check time, all that fun stuff. See above for descriptions. -----Original Message----- From: Jonathan A. Zdziarski [mailto:jonathanat_private] Sent: Tuesday, August 19, 2003 10:28 AM To: incidentsat_private Subject: document_all.pif What's up with the 20-someodd messages I've received today with document_all.pif ? Is this some new phase of the windows worm or a new virus spreading around ? --------------------------------------------------------------------------- Captus Networks - Integrated Intrusion Prevention and Traffic Shaping - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans - Automatically Control P2P, IM and Spam Traffic - Ensure Reliable Performance of Mission Critical Applications - Precisely Define and Implement Network Security and Performance Policies **FREE Vulnerability Assessment Toolkit - WhitePapers - Live Demo Visit us at: http://www.securityfocus.com/sponsor/CaptusNetworks_incidents_030814 ---------------------------------------------------------------------------- --------------------------------------------------------------------------- Captus Networks - Integrated Intrusion Prevention and Traffic Shaping - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans - Automatically Control P2P, IM and Spam Traffic - Ensure Reliable Performance of Mission Critical Applications - Precisely Define and Implement Network Security and Performance Policies **FREE Vulnerability Assessment Toolkit - WhitePapers - Live Demo Visit us at: http://www.securityfocus.com/sponsor/CaptusNetworks_incidents_030814 ----------------------------------------------------------------------------
This archive was generated by hypermail 2b30 : Tue Aug 19 2003 - 20:38:15 PDT