pen-test
[Top] [All Lists]

FAX virus

To: pen-test@securityfocus.com
Subject: FAX virus
From: Alcides <alcides.hercules@gmail.com>
Date: Wed, 07 Mar 2007 10:29:29 +0530
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:reply-to:user-agent:mime-version:to:subject:content-type:content-transfer-encoding; b=gLd9s6SjNv7ZwDcId4URPLZKjbgKDwc8CuWNivgpK9Y8FSpf+pFSbhZE79/VN/4k5/vVTa3aIxyXHSN6MraFVGIbHx6T9Yme6ssKIi7E/0I0v2fNSCb3bOxJFSZeNJKD9+S63gbM0r3+PAg7Pj/xLkUizNie88ZrfXyYMWY136o=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:reply-to:user-agent:mime-version:to:subject:content-type:content-transfer-encoding; b=KjO9JgpnzO/MAzgzMjm982IYhi8EdJmku+maM0AUlmRbELoHCNTC9mGH4yOYS1abuHPUNu7y726OUWADbh0r0KGtmbkX/1KJXM9nijaXYxRCkj0zKGLBwiJbQZLalflYodMjjoFJuvI/Mp8NST+QFWDcBZZz/34++TYYW3BQEDM=
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Reply-to: alcides.hercules@gmail.com
Resent-date: Fri, 9 Mar 2007 14:38:55 -0700 (MST)
Resent-from: pen-test-return-1078483727@securityfocus.com
Resent-message-id: <20070309213855.1EEBF144D95@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
User-agent: Thunderbird 1.5.0.10 (X11/20070221)

Hi list,

I have posted this earlier to security-basics list, but I got a few suggestions to post it here as well. I personally felt that I can get a better responses in technical sense here, hence decided to put this in front of you.
---------------------------->
My FAX server allows me to receive faxes from my clients from Internet.
My clients send me some documents using their built-in Fax Printer/other similar application on their PC. My fax server routes the stuff to the document processing(OCRing etc) applications. The document processing system extracts various data fields from received portable document format files. The whole scenario is windows environment and virus protection is temporarily off throughout the operations stated above.

Now, I have a query:
Can anyone send a fax that includes a file infected with the virus/ worm operates as a VBS script embedded within a PDF/TIF file to cause infections to my computers/ to affect my FAX system? What about other possibilities of "the bad guys" using some joiner (or wrapper as some say) to bind malware (trojan server etc) with the pdf/ TIF files and fax it to me?
I would be very thankful to know what are the various possibilities.
---------------------------->

Warm regards,
Alcides.

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.

http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>