Re: Hack / take down new WindowsXP beta server

From: Dave Woods (daveat_private)
Date: Thu Apr 12 2001 - 16:53:33 PDT

  • Next message: Robert A. Seace: "Re: Alcatel ADSL Backdoor"

    The average home user usually would have more open ports but there is some
    sort of firewall software installed ("I've been checking out my Internet
    Connection Firewall logs and am amazed at..."). Whether this is something
    completely integrated with XP or third party is not specified.
    
    -----Original Message-----
    From: VULN-DEV List [mailto:VULN-DEVat_private]On Behalf Of
    Aaron Leith
    Sent: April 12, 2001 12:10 PM
    To: VULN-DEVat_private
    Subject: Re: Hack / take down new WindowsXP beta server
    
    
    its back up again
    nmap syn port scan 1-1024 showed only the http port open
    from my experiance the average home user would have more
    than this open
    the first time i went to it i used lynx and it requested a download
    of a msdos program  <- wtf?????
    then tried to go there in netscape to get a better idear of what it
    was trying to do,but it wasn't responding
    my guess would be that the "msdos program" was cmd.exe
    prehaps someone got in with a url exploit?
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 10:02:35 PDT