Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email firstname.lastname@example.org
From: Paul Kozlenko (pkozlenko_at_rogers.com)
Date: Sat Oct 12 2002 - 13:55:52 CDT
If there is a firewall (SuSE hopefully) between you and the net. You could
perhaps setup a rule that would look for Nimda's tell tale striNNNNNg.
or code Red's .../winnt/system32..... and drop it.
----- Original Message -----
From: "Thomas Schweikle" <tschweiklefiducia.de>
Sent: Saturday, October 12, 2002 3:23 PM
Subject: RE: [suse-security] does anybody know such a log
> > Yes I do. This is why it doesn't really bother me. I just
> > can't believe that there's still Nimda/Code Red infected
> > boxes out there. After more than one year.
> Unfortunately there are. And often newly installed boxes out there do not
> incorporate the neccessary fixes to harden them against Nimda/Code Red.
> Some admins don't apply these patches regulary...
> Check the headers for your unsubscription address
> For additional commands, e-mail: suse-security-helpsuse.com
> Security-related bug reports go to securitysuse.de, not here
-- Check the headers for your unsubscription address For additional commands, e-mail: suse-security-helpsuse.com Security-related bug reports go to securitysuse.de, not here