Re: [suse-security] Nimda Worm - BugTraq
** is that true ? the readme executes without being explicitly opened? ** ** thank
yes it's true also it can getcha if you go tot a webpage that has been haxored by these guys... all w/o your permission or even knowledge ( i.e. it doesn't ask it just does it )
Only when using IE5.x without SP2 for any of the IE5.x Versions though. IE5.x's with their respective SP2s, IE4 and IE6 ask the user whether he/she would like to open or execute the javascript which gets you your personal copy of Nimda. The same principal applies to your readme.exe in your mail ... IE5.x without SP2 simply executes, all other IE's ask. If the user now hits YES ... you'll end up with some major extra hours cleaning your systems. Mit freundlichen Grüßen / Kind Regards Milan Goellner Network Technician ---------------------------------------------------------------- Compu-Shack Electronic GmbH Ringstrasse 56-58 56564 Neuwied Germany Telefon +49/(0) 26 31-9 83-962 Email milan.goellner@compu-shack.com http://www.compu-shack.com
** Reply to message from "Milan Goellner"
participants (2)
-
jfweber@eternal.net
-
Milan Goellner