-
August 15th, 2003, 03:49 AM #1
Heads up! The MSBlast DDoS Attack Had Begun!
I'm barely able to connect to Microsoft at times. I just checked the firewall logs. There's a massive amount of connection attempts coming from 207.46.249.61 (wu-ori.microsoft.com). However, it's important to note that this IP is being spoofed by the MSBlast worm. It's attempting to connect to a random port between 1000 and 2000 every 2 seconds. The source port on the attempts is port 80, otherwise known as HTTP. The way this DDoS works is it attempts to connect to the port. However, because of the spoofed IP and port, the response to the connect attempt is sent to Windows Update on port 80. That means that all of you who don't have a firewall are contributing to this even if you aren't infected. If you're unprotected, please do everyone a favor and get a firewall.
Team Captain and Daily Stats Poster for the TechIMO Find-a-Drug Team. Download Find-a-Drug at http://www.find-a-drug.org/ and set the team number to 2037
-
August 15th, 2003, 03:56 AM #2
See this thread also
Cheers
MickI don't like sigs on forums like this.
-
August 15th, 2003, 04:56 AM #3
are there any free firewall programs out there that are easy to use? i'd use one but dont know where to find em at...for free..cause im poor...lol
Truckie :)
-
August 15th, 2003, 05:00 AM #4
What OS do you have? WinXP has a simple one built in.
The best free one (IMO) is Sygate Personal firewall.
Cheers
MickI don't like sigs on forums like this.
-
August 15th, 2003, 05:02 AM #5
Read my post:
Does Microsoft deserve the MSBlast worm?
-
August 15th, 2003, 05:08 AM #6
I did I voted. Now sue me.

Cheers
MickI don't like sigs on forums like this.
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)



LinkBack URL
About LinkBacks





Reply With Quote

Morning! Today I finish one audit and start another. :rolleyes:
Is It Just Me? v233893843