|
[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]
[Dshield] RE: CA eTrust TARGET Advisory - Monitoring New "Attack" |  |
- To: <[EMAIL PROTECTED]>
- Subject: [Dshield] RE: CA eTrust TARGET Advisory - Monitoring New "Attack"
- From: "Yevette Maurer" <[EMAIL PROTECTED]>
- Date: Wed, 1 Oct 2003 15:12:10 -0700
- Old-x-envelope-to: [EMAIL PROTECTED]
- Reply-to: General DShield Discussion List <[EMAIL PROTECTED]>
- Sender: [EMAIL PROTECTED]
 |
| |
<snip>
Virus Information CenterSecurity Advisory:
eTrust TARGET Tracking
Suspicious Network Activity
Computer Associates (CA) eTrust Threat Analysis and Response Global
Emergency Team (TARGET) is currently tracking and researching a new
suspicious network activity that has received some attention on
NTBugTraq. This suspicious activity involves involuntary changes to the
DNS server settings on Windows 2000 and XP (not an exhaustive list).
At this time, we are advising our customers to monitor for such
suspicious changes and report them to our support organization.
Additionally, monitoring the Windows Registry on critical servers for
changes is another potential warning that this activity is affecting
your network. Early analysis indicates this change may be the result of
the execution of a script after visiting a certain website.
</snip>
Network Associates is reporting this as a new Trojan:
http://vil.nai.com/vil/content/v_100719.htm
_______________________________________________
list mailing list
[EMAIL PROTECTED]
To change your subscription options (or unsubscribe), see: http://www.dshield.org/mailman/listinfo/list
 |
| |