URL: https://www.overclockers.at/applications/riaa_wurm_62900/page_1 - zur Vollversion wechseln!
hat schon wer genauere infos dazu?
hab das hier gelesen: http://derstandard.at/?ressort=napster
look @ http://online.securityfocus.com/arc...10/2003-01-16/2
hier steht was über nen exploit von mpg123
Zitat...
When the player is exploited, a few things happen. First, all p2p-serving
software on the machine is infected, which will allow it to infect other
hosts on the p2p network. Next, all media on the machine is cataloged, and
the full list is sent back to the RIAA headquarters (through specially
crafted requests over the p2p networks), where it is added to their records
and stored until a later time, when it can be used as evidence in criminal
proceedings against those criminals who think it's OK to break the law.
...
und wie werden meine daten da übertragen? i mein, wird das net eh von meinen firewalls abgeblockt wenn da ein programm was senden will?
nope
können ja requests sein, die über den infected client rennen
ich hab in meiner Firewall alle subnets die zu riaa, mpaa, NetPD...... usw gehörn geblockt ...
is aber toll. weil wenn man p2p nutzt um legale sachen zu sharen (was es ja auch geben kann) wird man trotzdem ausspioniert...
ist sowas dann net strafbar? weils ja eigentlich a einbruch in meinen pc ist wenn da was ausgelesen wird.
Zitat von g0dsm4ckich hab in meiner Firewall alle subnets die zu riaa, mpaa, NetPD...... usw gehörn geblockt ...
link hab ich zuhause...
ich poste ihn dann später
Irgendwie muss sich der Wurm doch bemerkbar machen. Als Prozess im Speicher, Erweiterung der Programme, etc. Aber der Post auf der Bugtraq Liste enthielt überhaupt keine Details, also etwas skepsis ist schon angebracht.
imho bledsinn... die wolln sich nur wichtig mochn...
Zitat von g0dsm4ckich hab in meiner Firewall alle subnets die zu riaa, mpaa, NetPD...... usw gehörn geblockt ...
Zitat(through specially crafted requests over the p2p networks)
gibts da nicht schon irgendn scanner um das ding zu entfernen?
ist ja ne frechheit sowas..
ZitatOur software worked better than even we hoped, and current reports indicate
that nearly 95% of all p2p-participating hosts are now infected with the
software that we developed for the RIAA.


frage wäre auch welche p2p netzwerke betroffen sind. wenns zb nur alle napster user sind wäre es egal. kazaa oder so wäre schon ziemlich *piep*
Link zu der IP-Blockliste: http://www.unixhub.com/block.html
unter "Personal information stealers (Big Brother):"
overclockers.at v4.thecommunity
© all rights reserved by overclockers.at 2000-2026