Coreflood Trojan

You ITs may want to do some reading:

Russian Gang Hijacking PCs in Vast Scheme | Gainesville.com | The Gainesville Sun | Gainesville, FL

SecureWorks unmasks the Coreflood Trojan | Defense in Depth - computer security, hacking, crime, viruses - CNET News.com

Coreflood/AFcore Trojan Analysis - Research - SecureWorks

Thanks for the info Snake, I’m the SysAdmin for a non-profit and that’s all I need! :eek:

ActiveX is the exploit vector that just will not die. And yet MS products like SharePoint et al. require enterprises to keep that vector open for years to come, whether they want to or not.

sigh

KV

Browser Exploit
ActiveX
Registry Keys
Administrator
\windows\system32

Sorry, I’m starting to chuckle.
When will M$ get their act together.

Nice info though snakedriver