beware upload.ntlworl.com!
27-01-2004, 17:32
|
#1
|
|
cf.mega poster
Join Date: Jun 2003
Posts: 1,742
|
beware upload.ntlworl.com!
I've just fallen for typing my username and password into an FTP server at upload.ntlworl.com. Doh! At least I realised pretty quickly and have now changed my password.
One to watch out for.
|
|
|
27-01-2004, 17:47
|
#2
|
|
Permanently Banned
Join Date: Jun 2003
Location: norton , teesside
Age: 40
Posts: 10,571
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by spiderplant
I've just fallen for typing my username and password into an FTP server at upload.ntlworl.com. Doh! At least I realised pretty quickly and have now changed my password.
One to watch out for.
|
i wondered what the hell you were on about for a minute until i read it properly  , where did that come from
|
|
|
27-01-2004, 18:09
|
#3
|
|
Inactive
Join Date: Aug 2003
Location: Coventry
Posts: 9
|
Re: beware upload.ntlworl.com!
I think that recent ntl upgrades might have left us vulnerable.
I've just had an email 'returned' from
"stephen@sauldharrison.com"
because:
"Your message (header below) has been deleted because of the following error:
A virus of type Unidentified Virus was detected in attachment document.zip"
No email sent to them by me and never had that kind of messangs sent to me. Virus check said everything OK.
Any suggestions, anyone?
|
|
|
27-01-2004, 18:16
|
#4
|
|
80% of my former self
Join Date: Jul 2003
Location: Sunderland
Age: 31
Posts: 412
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by clammit
I think that recent ntl upgrades might have left us vulnerable.
I've just had an email 'returned' from
"stephen@sauldharrison.com"
because:
"Your message (header below) has been deleted because of the following error:
A virus of type Unidentified Virus was detected in attachment document.zip"
No email sent to them by me and never had that kind of messangs sent to me. Virus check said everything OK.
Any suggestions, anyone?
|
Probably someone else spamming / sending out the virus, with lots of different faked from addresses - yours will be one of many I'd imagine
__________________
If playing computer games really has an effect on kids, they'd all be floating round, popping pills, and listening to repetitive electronic music....
|
|
|
27-01-2004, 18:24
|
#5
|
|
Inactive
Join Date: Aug 2003
Location: Coventry
Posts: 9
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by Kneebs
Probably someone else spamming / sending out the virus, with lots of different faked from addresses - yours will be one of many I'd imagine
|
I don't think my address is one that would be guessed - I'm thinking that it must have been taken from a list. ?
|
|
|
27-01-2004, 18:33
|
#6
|
|
80% of my former self
Join Date: Jul 2003
Location: Sunderland
Age: 31
Posts: 412
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by clammit
I don't think my address is one that would be guessed - I'm thinking that it must have been taken from a list. ?
|
Yep, that or maybe one of your pals has your address stored in their address book, and they've got the virus, and its gone through the list, harvesting all the address
__________________
If playing computer games really has an effect on kids, they'd all be floating round, popping pills, and listening to repetitive electronic music....
|
|
|
27-01-2004, 18:50
|
#7
|
|
Rather fruity
Join Date: Jun 2003
Posts: 6,044
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by spiderplant
I've just fallen for typing my username and password into an FTP server at upload.ntlworl.com. Doh! At least I realised pretty quickly and have now changed my password.
One to watch out for.
|
Have you let Ntl know about this? I believe that the e-mail addy is abuse@ntl.com
|
|
|
27-01-2004, 19:08
|
#8
|
|
cf.mega poster
Join Date: Jun 2003
Posts: 1,742
|
Re: beware upload.ntlworl.com!
I will email the abuse mailbox, but I doubt there's anything they can do (apart from warn other users).
SamSpade says that ntlworl.com is registered in Korea.
|
|
|
27-01-2004, 19:15
|
#9
|
|
The only Morris Dancer ?
Join Date: Dec 2003
Location: Bucks
Age: 55
Posts: 1
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by clammit
I think that recent ntl upgrades might have left us vulnerable.
I've just had an email 'returned' from
"stephen@sauldharrison.com"
because:
"Your message (header below) has been deleted because of the following error:
A virus of type Unidentified Virus was detected in attachment document.zip"
No email sent to them by me and never had that kind of messangs sent to me. Virus check said everything OK.
Any suggestions, anyone?
|
Looks like the Mydoom virus Look here
|
|
|
27-01-2004, 19:18
|
#10
|
|
Inactive
Join Date: Aug 2003
Location: Coventry
Posts: 9
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by Kneebs
Yep, that or maybe one of your pals has your address stored in their address book, and they've got the virus, and its gone through the list, harvesting all the address
|
Thanks. I shouldn't have jumped to the conclusion that it was in any way ntl's fault. Habit I suppose.
|
|
|
27-01-2004, 21:38
|
#11
|
|
cf.geek
Join Date: Jun 2003
Location: Farnham
Posts: 503
|
Re: beware upload.ntlworl.com!
I think ntlworl.com has a wildcard in its DNS since I can ping pretty much anything
Code:
C:\Documents and Settings\Alan Waddington>ping *********.ntlworl.com
Pinging *********.ntlworl.com [220.80.108.83] with 32 bytes of data:
Reply from 220.80.108.83: bytes=32 time=321ms TTL=241
Reply from 220.80.108.83: bytes=32 time=309ms TTL=241
Reply from 220.80.108.83: bytes=32 time=327ms TTL=241
Reply from 220.80.108.83: bytes=32 time=309ms TTL=241
Ping statistics for 220.80.108.83:
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 309ms, Maximum = 327ms, Average = 316ms
|
|
|
27-01-2004, 21:55
|
#12
|
|
Busy Admin
Join Date: Oct 2003
Location: Nottingham
Age: 45
Services: VM Phone : Sky+ Multiroom : VM Cable (20 Mbps)
Posts: 14,485
|
Re: beware upload.ntlworl.com!
and the IP is also Korean - KOREA TELECOM to be exact.
__________________
Click here for a real, interactive, tv guide.
|
|
|
27-01-2004, 22:44
|
#13
|
|
www.stella-artois.com
Join Date: Jan 2004
Posts: 2,233
|
Re: beware upload.ntlworl.com!
fiendish little buggers
|
|
|
27-01-2004, 22:45
|
#14
|
|
cf.mega poster
Join Date: Jun 2003
Age: 40
Posts: 5,569
|
Re: beware upload.ntlworl.com!
Quote:
|
Originally Posted by Alan Waddington
I think ntlworl.com has a wildcard in its DNS since I can ping pretty much anything
Code:
C:\Documents and Settings\Alan Waddington>ping *********.ntlworl.com
Pinging *********.ntlworl.com [220.80.108.83] with 32 bytes of data:
Reply from 220.80.108.83: bytes=32 time=321ms TTL=241
Reply from 220.80.108.83: bytes=32 time=309ms TTL=241
Reply from 220.80.108.83: bytes=32 time=327ms TTL=241
Reply from 220.80.108.83: bytes=32 time=309ms TTL=241
Ping statistics for 220.80.108.83:
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 309ms, Maximum = 327ms, Average = 316ms
|
 class
__________________
Cantona The King
|
|
|
27-01-2004, 23:44
|
#15
|
|
Cable Forum Team
Join Date: Jun 2003
Age: 44
Posts: 11,706
|
Virus Warning
Quote:
|
Originally Posted by clammit
I think that recent ntl upgrades might have left us vulnerable.
I've just had an email 'returned' from
"stephen@sauldharrison.com"
because:
"Your message (header below) has been deleted because of the following error:
A virus of type Unidentified Virus was detected in attachment document.zip"
No email sent to them by me and never had that kind of messangs sent to me. Virus check said everything OK.
Any suggestions, anyone?
|
THIS IS A NEW VIRUS (Apologies for the shouting!) Dont open the .zip file.
it comes in other forms too with headers on email such as Test etc. My office got bombarded with over 100 dodgy emails today
The virus has spread like wildfire throughout the day. It's called Novarg or Mydoom depending on your A/V provider, and is potentially far bigger than SoBig which hit last year.
Everybody should ensure they have updated their antivirus software, even if they only did so yesterday.
|
|
|
|
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
|
|
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT +1. The time now is 16:25.
|