Vulnerability Development mailing list archives

Re: New "concept" virus/worm?


From: Gary Flynn <flynngn () jmu edu>
Date: Tue, 18 Sep 2001 14:20:13 -0400

Dan Jones wrote:

It also appears that when users connect to an infected web server the
server will attempt to send/upload readme.exe to the user.

I was afraid of that. Its probably using the IE defect announced
last March:

http://www.jmu.edu/computing/info-security/engineering/issues/iemime.shtml

-- 
Gary Flynn
Security Engineer - Technical Services
James Madison University

Please R.U.N.S.A.F.E.
http://www.jmu.edu/computing/runsafe


Current thread: