[nsp-sec] ACK: Compromised websites

Rodolfo Baader rbaader at arcert.gov.ar
Thu Jul 12 17:56:53 EDT 2012


Hi Thomas,

proxy ACK for AR ASNs:
7303, 10318, 10834, 11664, 11815, 20207, 27823, 27898, 52270

Notifications were sent to the abuse/noc departments.

Regards,
R.

On 10/07/12 11:27, Thomas Hungenberg wrote:
> ----------- nsp-security Confidential --------
> 
> Hi,
> 
> please find below a list of websites that recently have been found compromised by Symantec.
> The attackers uploaded a malicious .htaccess to redirect users to sites spreading Trojan.Milicenso.
> 
> See this report for more information:
> http://www.symantec.com/connect/blogs/trojanmilicenso-infection-through-htaccess-redirection
> .....
> .....
>
> - Thomas
> CERT-Bund Incident Response & Anti-Malware Team



More information about the nsp-security mailing list