lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [day] [month] [year] [list]
Date: Tue, 23 Dec 2008 14:44:35 +0000
From: "Tribal MP" <tribalmp@...il.com>
To: full-disclosure@...ts.grok.org.uk
Subject: Protection Software?

Is there any aditional software for this type os "attacks"?

Unknown Alert
Image_ICON_Malformed .... - 210-250.amazon.com (72.21.210.250)
HTTP_Unknown_Protocol ... - 204.15.127.241
HTTP_Unknown_Protocol ... - 210.23.9.16
HTTP_Unknown_Protocol ... - 69.65.41.168
Image_ICON_Malformed .... -
a88-221-32-146.deploy.akamaitechnologies.com (88.221.32.146)
Image_PNG_Malformed ..... - cds106.lon.llnw.net (87.248.210.136)
HTTP_Unknown_Protocol ... - custip.dcs.net (217.78.33.135)
HTTP_Unknown_Protocol ... - din.buscape.com.br (200.143.19.66)
UPX_Packed_Executable ... - hosted-by.leaseweb.com (85.17.237.203)
Image_ICON_Malformed .... - nwk-www.apple.com (17.149.160.10)
HTTP_Unknown_Protocol ... - one.cbox.ws (63.246.147.200)
Image_PNG_Malformed ..... - wapalizer.com (72.19.233.238)
HTTP_Unknown_Protocol ... - www2.hardstore.com (217.78.33.139)

Orange Alert
HTML_Image_Source ....... - 69.31.85.211
HTML_NullChar_Evasion ... - 140.72.233.72.static.reverse.ltdomains.com
(72.233.72.140)
HTML_NullChar_Evasion ... - apache2-moon.dalitz.dreamhost.com (67.205.28.205)
HTML_NullChar_Evasion ... - a195-8-10-6.deploy.akamaitechnologies.com
(195.8.10.6)
HTML_NullChar_Evasion ... - excentric.servismart.net (195.22.24.211)

Especially here (Full Disclosure)
HTML_NullChar_Evasion ... - gossamer-threads.com (208.70.244.160)

JavaScript_Large_Unescape - hb.bos.lycos.com (209.202.254.61)
JavaScript_Large_Unescape - image.ig.com.br (200.225.157.30)
TCP_Within_Window_DoS ... - lm-in-f18.google.com (66.102.9.18)
TCP_Within_Window_DoS ... - lm-in-f19.google.com (66.102.9.19)
TCP_Within_Window_DoS ... - lm-in-f83.google.com (66.102.9.83)
HTML_NullChar_Evasion ... - mobile9.com (75.126.130.227)
Javascript_Large_Unescape - rapidshare.de (130.117.156.250)
HTML_NullChar_Evasion ... - serversomewhere.com (74.55.126.82)

Red Alert
Content_Compound_File_Bad_Extension -
80-239-236-136.customer.teliacarrier.com (80.239.236.136)
HTTP_GETargscript ................. - <b>CL-T019-221CL</b>
HTTP_POST_Script .................. - fg-in-f191.google.com (72.14.221.191)
JavaScript_NOOP_Sled .............. - host50-5-103-94.hostteam.org (94.103.5.50)

Red Extreme Alert
HTTP_Apache_SlashSlash .. - andronike.zaxihosting.com (64.191.5.165)

<i>Detalhes para <b>CL-T019-221CL</b></i>
IP: 72.55.133.89
DNS: ip-72-55-133-89.static.privatedns.com
Node: CL-T019-221CL
Group: WORKGROUP
NetBIOS: WORKGROUP
MAC: 001A92931814

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ