The message contains Unicode characters and has been sent as a binary attachment.
attachment: doc.zip
... DHCP enabled workstations have had
their DNS reconfigured to point to two of the three addresses
User-driven trojan or not, machines running DHCP can pretty much
be told by a DHCP server that their leases are up and it's time to
renumber, and then that their new DNS servers are X Y and
Once again, I wouldn't mind a way to turn off *ALL* the RPC stuff,
including the RPC service itself, without paying the price of having
almost everything I do afterward just sit there and stupidly wait for it
to respond. A box with it disabled *will* run, just barely, it'll just
be sluggish as
[Observation stolen from nanog.]
Windows Update uses ActiveX Controls and active scripting to display
content correctly and to determine which updates apply to your computer.
To view and download updates for your computer, your Internet Explorer
security settings must meet the
workaround would be to firewall the router's own IP address(es). This
would still allow the router to perform its routing function for other IPs
Y'mean this *still* isn't done as standard best practice?
*sigh* ... well, perhaps not, because of speed considerations, real
or perceived,
if you wanted to deal with zip files you needed to download
WinZip, PKZip or something similar, but now, thanks to Microsoft, all
you have to do is double click.
At least it still takes one manual step, from what I'm gathering.
A step which a lot of idiots just casually do anyways,
Maybe I'm a bit out of the loop, but this one is interesting BECAUSE
of the .zip encapsulation. The fact that it spreads at all is due
to one or both of
.ZIP archives now auto-explode and auto-EXECUTE contents
inside some MUAs
people are being REALLY stupid
The first