Security Incidents mailing list archives
RE: Increased Kuang2 activity
From: Thierry Zoller <support () sniff-em com>
Date: Tue, 11 Feb 2003 01:26:02 +0100 (W. Europe Standard Time)
The recent rise of scans could be linked to an automated version of a tool similar to this : http://www.tlsecurity.net/Incoming/Backdoor/Kuang2updater.html Quote : You can paste a list of kaung2 compromised hosts and it will automatically connect and upload your whatever you choose to the infected hosts. ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
Current thread:
- RE: Increased Kuang2 activity, (continued)
- RE: Increased Kuang2 activity Logan F.D. Greenlee (Feb 10)
- RE: Increased Kuang2 activity Jason Dixon (Feb 10)
- RE: Increased Kuang2 activity Rev. Kronovohr (Feb 10)
- RE: Increased Kuang2 activity Jennifer Fountain (Feb 10)
- RE: Increased Kuang2 activity davec (Feb 10)
- RE: Increased Kuang2 activity Logan F.D. Greenlee (Feb 10)
- RE: Increased Kuang2 activity James C Slora Jr (Feb 10)
- Re: Increased Kuang2 activity Kurt Seifried (Feb 10)
- RE: Increased Kuang2 activity James C Slora Jr (Feb 10)
- RE: Increased Kuang2 activity Baklarz, Ron (Feb 10)
- RE: Increased Kuang2 activity James C Slora Jr (Feb 10)
- RE: Increased Kuang2 activity Thierry Zoller (Feb 10)
- RE: Increased Kuang2 activity Logan F.D. Greenlee (Feb 10)