Home Messages Index
[Date Prev][Date Next][Thread Prev][Thread Next]
Author IndexDate IndexThread Index

Re: mysterious malware

On 25 Jan, 07:34, Tim Smith <reply_in_gr...@xxxxxxxxxxxxxxxx> wrote:

> How do Windows zombies get access to Linux server passwords?  (And not just any old ordinary passwords, either...it would have to be passwords to server accounts that have root access on the servers).

Why is it the exploit only compromises Windows desktops, why not use
the same exploit to compromise Linux desktops or even other Linux/
Apache Web sites? What is the exact method of compromise? It does seem
that Finjan does seem to know an awfull lot about the 'rootkit'.
-------

""A Linux server virus has recently been reported targeting multiple
platforms .. It has been established that this Rootkit requires super
user privileges. The initial entry point has not been confirmed yet"

http://servertune.com/kbase/entry/258/

'The "random js attack" is performed by dynamic embedding of scripts
into a webpage .. When the site is accessed again from the same IP
address, the malicious JavaScript is no longer referenced in the
source HTML of the site."

"Malicious Page of the Month"
http://www.finjan.com/GetObject.aspx?ObjId=550&Openform=50
-------

Never heard of Finjan before .. $300 for a per script .. sheezz O: ..

"ServerTune IFrame Shield is a Perl script and special set of rules
which will find and remove IFrame Injection code(s)  .. Order
ServerTune IFrame Shield Now
 .. $300"

"Malecious random JS Rootkit" ==<<<

http://servertune.com/kbase/?View=entry&EntryID=259

[Date Prev][Date Next][Thread Prev][Thread Next]
Author IndexDate IndexThread Index