[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] VeriSign's fake SMTP server for SiteFinder



On Mon, Sep 22, 2003 at 06:45:33PM -0400, Jonathan A. Zdziarski wrote:
> Synchronize your watches, and tomorrow morning everyone send a 100MB
> attachment to someone at lkfjwlfkewjflwef.com.  

What a waste..

[arpa-jamie] /raid/home/jamie > telnet lkfjwlfkewjflwef.com 25
Trying 64.94.110.11...
Connected to lkfjwlfkewjflwef.com.
Escape character is '^]'.
220 sitefinder.verisign.com VeriSign mail rejector (Postfix)
ehlo arpa.com
250-OK
250-PIPELINING
250-SIZE 10240000
250-ETRN
250-XVERP
250 8BITMIME
mail from:<blah@xxxxxxxx>
250 Ok
rcpt to:<someone.else@xxxxxxxxxxxxxxxxxxxx>
550 <unknown[199.245.173.5]>: Client host rejected: The domain you are trying 
to send mail to does not exist.

.. the DATA never actually makes it to their machine.  Your 100MB attachment
will simply be a waste of your own cycles.

jamie
-- 
i.am-> jamie.(at).arpa.dot.com
arpa.com :: the mainstream runs shallow

jesus loves you... but satan has candy.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html