On Mon, 27 Jan 2003, Sukrit wrote: > > While waiting for your reply, my goals changed a bit. i got some sort > of worm (redlof if you must know) on my windows machine (with some > 11000 files affected). It tags to the end of every html file, so i > didn't want chomping of last 12 lines of files that hadn't got it :) > But i must say this brevity is the soul of wit and you guys sure are > witty (it'll take me a while to understand your codes!). > As an aside, what you're seeing is the the "Microsoft Web Worm". I've been tracking this on my home netwwork and over the course of the past 24 hrs alone, I've been attacked from no less than 221 source addresses from 220 AS's (ah, the parsing power of Perl). This thing is massive.
The attack seems to be concentrated on port 1434 and is only affecting MS SQL products. Your friends told you to use FreeBSD for a reason, and this is it. =))) Anyway more info regarding the attack can be found at http://news.yahoo.com/news?tmpl=story2&cid=569&ncid=738&e=4&u= /nm/20030126/tc_nm/tech_microsoft_virus_dc Notice one of the things MS says: "The unfortunate thing about this is when you know that this was a problem and they (customers) hadn't updated," Charney said, "That's a bit frustrating." Nice. jab -- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]