<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Olha o virus!</title>
	<atom:link href="http://www.crisdias.com/2002/12/11/olha-o-virus/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.crisdias.com/2002/12/11/olha-o-virus/</link>
	<description>Muitas perguntas, poucas respostas</description>
	<lastBuildDate>Wed, 08 Feb 2012 18:00:56 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Cristiano Dias</title>
		<link>http://www.crisdias.com/2002/12/11/olha-o-virus/comment-page-1/#comment-2320</link>
		<dc:creator>Cristiano Dias</dc:creator>
		<pubDate>Wed, 11 Dec 2002 09:11:01 +0000</pubDate>
		<guid isPermaLink="false">#comment-2320</guid>
		<description>Bem lembrado, Ricardo.</description>
		<content:encoded><![CDATA[<p>Bem lembrado, Ricardo.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ricardo.</title>
		<link>http://www.crisdias.com/2002/12/11/olha-o-virus/comment-page-1/#comment-2319</link>
		<dc:creator>Ricardo.</dc:creator>
		<pubDate>Wed, 11 Dec 2002 09:07:10 +0000</pubDate>
		<guid isPermaLink="false">#comment-2319</guid>
		<description>Ola Cris,&lt;br /&gt;
&lt;br /&gt;
Lembre-se que o bugbear pode criar um from: baseado nos emails do computador infectado.&lt;br /&gt;
&lt;br /&gt;
http://www.symantec.com/avcenter/venc/data/w32.bugbear@mm.html&lt;br /&gt;
&lt;br /&gt;
It then uses its own SMTP engine to send itself to all email addresses that it finds. The worm also can construct addresses for the &quot;From:&quot; field using information that it harvests from the infected computer. For example, the worm may find the addresses a@a.com, b@b.com and c@c.com. The worm could create an email message addressed to a@a.com and spoof the &quot;From:&quot; address, so that it appears to come from c@b.com. The spoofed address can also be a valid email address that the worm finds on the system.&lt;br /&gt;
&lt;br /&gt;
Voce ainda tem os cabecalhos da mensagem? Com eles da para descobrir o IP de quem mandou a mensagem.</description>
		<content:encoded><![CDATA[<p>Ola Cris,</p>
<p>Lembre-se que o bugbear pode criar um from: baseado nos emails do computador infectado.</p>
<p><a href="http://www.symantec.com/avcenter/venc/data/w32.bugbear@mm.html" rel="nofollow">http://www.symantec.com/avcenter/venc/data/w32.bugbear@mm.html</a></p>
<p>It then uses its own SMTP engine to send itself to all email addresses that it finds. The worm also can construct addresses for the &#8220;From:&#8221; field using information that it harvests from the infected computer. For example, the worm may find the addresses <a href="mailto:a@a.com">a@a.com</a>, <a href="mailto:b@b.com">b@b.com</a> and <a href="mailto:c@c.com">c@c.com</a>. The worm could create an email message addressed to <a href="mailto:a@a.com">a@a.com</a> and spoof the &#8220;From:&#8221; address, so that it appears to come from <a href="mailto:c@b.com">c@b.com</a>. The spoofed address can also be a valid email address that the worm finds on the system.</p>
<p>Voce ainda tem os cabecalhos da mensagem? Com eles da para descobrir o IP de quem mandou a mensagem.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

