For example there is a message showing up in the logfile as

09/29/2004 16:02:55 Qc07307e2007404eb [Microsoft GDIPlus.DLL JPEG
Vulnerability]
09/29/2004 16:02:55 Qc07307e2007404eb [Microsoft GDIPlus.DLL JPEG
Vulnerability]
09/29/2004 16:02:55 Qc07307e2007404eb [Microsoft GDIPlus.DLL JPEG
Vulnerability]
09/29/2004 16:02:56 Qc07307e2007404eb Found a bogus .jpg file
09/29/2004 16:02:56 Qc07307e2007404eb Found a bogus .jpg file
09/29/2004 16:02:56 Qc07307e2007404eb Found a bogus .jpg file
09/29/2004 16:02:56 Qc07307e2007404eb File(s) are INFECTED [[Microsoft
GDIPlus.DLL JPEG Vulnerability]: 0]
09/29/2004 16:02:56 Qc07307e2007404eb Scanned: CONTAINS A VIRUS [MIME: 10
2230347]
09/29/2004 16:02:56 Qc07307e2007404eb From:xxxxxxxxxxxxxx To:
xxxxxxxxxxxxxxxxx [incoming from x.x.x.x]
09/29/2004 16:02:56 Qc07307e2007404eb Subject: xxxxxxxxxxxxxxxxxxxxxx


What Attacker would use 2 MB images? (or at least 3 images each one having
700 kByte)

Markus



---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".    The archives can be found
at http://www.mail-archive.com.

Reply via email to