[nsp-sec] Compromised websites

Manuel Subredu manuel.subredu at roedu.net
Tue Jul 10 11:41:27 EDT 2012


ACK 2164 && proxy for 5606, 8708.

On 7/10/12 5:27 PM, Thomas Hungenberg wrote:
> ----------- nsp-security Confidential --------
> 
> Hi,
> 
> please find below a list of websites that recently have been found compromised by Symantec.
> The attackers uploaded a malicious .htaccess to redirect users to sites spreading Trojan.Milicenso.
> 
> See this report for more information:
> http://www.symantec.com/connect/blogs/trojanmilicenso-infection-through-htaccess-redirection
> 
> 


-- 
=====================================
Manuel SUBREDU
Network Engineer at AARNIEC/RoEduNet
RoCSIRT Coordinator
mobile: +40 (758) 808 052
phone:  +40 (232) 201 007
fax:    +40 (232) 201 200
e-mail: manuel.subredu at roedu.net
=====================================




-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 307 bytes
Desc: OpenPGP digital signature
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20120710/1812e324/attachment-0001.sig>


More information about the nsp-security mailing list