Re: Water tight opt-in (yet another FUSSP)

Chris Lewis <[email protected]> Mon, 13 Jan 2014 00:02:07 -0500
Newsgroups gmane.ietf.asrg
Message-ID <[email protected]>
On 01/12/2014 11:29 PM, Barry Shein wrote:

> Anyone see the incessant "Your Court Date" and similar in the past few
> weeks with embedded zip files with viruses?

AA/Delta/USAir, Court date and several others.  The malware was Asprox.
Malware spewed by compromised web sites for the most part, Asprox botnet
did ordinary spam.

We generally do not distinguish contents between malware, ordinary spam,
and other things on the spam blocking side.

For example Cutwail spams a bit of every kind of abuse imaginable.

> I believe popular anti-virus programs warned/blocked, they weren't
> particularly sophisticated.

Popular DNSBLs blocked too.

> But of course they're fishing (not phishing) for vulnerable sites.

No, vulnerable people who click on things.  Asprox doesn't do website
takeovers.

> I assume for botnets.
> 
> But botnets is solved? Confusing.

Not solved: significantly on the decline.

-
This is the asrg mailing list.  To change your subscription settings, see
http://lists.services.net/cgi-bin/mj_wwwusr/domain=lists.gurus.org