1 Feb
2004
1 Feb
'04
2:10 a.m.
Asia (remember the international date line) started on MyDoom already, although some reports said the worm used 1609 GMT to start its attack. SCO appears to have deleted the A record for www.sco.com from their DNS about 1 hour ago. I don't know how often MyDoom does the DNS lookup, so it may not stop things. As far as I can tell, no third-party ISP is blocking traffic to SCO. Traceroutes by IP address continue to nearly their last upstream hop. SCO's immediate upstream providers are probably helping.