- Joined
- Mar 5, 2002
- Messages
- 25,751
- Reaction score
- 1,210
A new Storm site advertises a networking application. That site looks like this:
... a mere visit to the site using an unpatched system will trigger an exploit to automatically download and execute a malicious file.
Patched systems are protected but only if the users do not choose to download the file (with filename krackin.exe) and execute it themselves.
The webpage is detected as Trojan-Downloader.JS.Agent.KD while the file is detected as Email-Worm.Win32.Zhelatin.KE
... a mere visit to the site using an unpatched system will trigger an exploit to automatically download and execute a malicious file.
Patched systems are protected but only if the users do not choose to download the file (with filename krackin.exe) and execute it themselves.
The webpage is detected as Trojan-Downloader.JS.Agent.KD while the file is detected as Email-Worm.Win32.Zhelatin.KE