Full Disclosure mailing list archives
Mystery DNS Changes
From: "Mike O'Connor" <oconnor123 () sympatico ca>
Date: Sat, 4 Oct 2003 16:59:02 -0400
I have a somewhat different strain. Mine displays ads coming from http://cdn2.adsdk.com, which is an alias for a1906.g.akamai.net . There are no registry changes that I can detect, and my DNSs remain unmolested according to the ipconfig program. I have looked (particularly in the WINDOWS\Help directory) but I can find no rogue Hosts file, although there must be one somewhere to do the google hijacking. All of which is to say that I think my infection, although related to the one described on McAfee and in previous posts to this thread, is distinct from it. _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- RE: Mystery DNS Changes, (continued)
- RE: Mystery DNS Changes Randal, Phil (Oct 02)
- Re: Mystery DNS Changes Joe Stewart (Oct 02)
- Re: Mystery DNS Changes Paul Tinsley (Oct 02)
- RE: Mystery DNS Changes Harris, Michael C. (Oct 02)
- RE: Mystery DNS Changes Schmehl, Paul L (Oct 02)
- Re: Mystery DNS Changes KF (Oct 02)
- RE: Mystery DNS Changes Mike O'Connor (Oct 03)
- RE: Mystery DNS Changes Paul Schmehl (Oct 03)
- RE: Mystery DNS Changes Nick FitzGerald (Oct 03)
- RE: Mystery DNS Changes Dowling, Gabrielle (Oct 03)
- Mystery DNS Changes Mike O'Connor (Oct 04)
- RE: Mystery DNS Changes Randal, Phil (Oct 02)