View Single Post
Old 05-10-2004, 07:53 AM  
JamesK
hi
 
Industry Role:
Join Date: Jun 2002
Posts: 16,731
Quote:
Originally posted by SmutServer
somebody added an i-frame (dont ask me how or who)
to this file to many of the servers headers
http://www3.smutserver.com/anal/badar/helpf.php

decode this and you will get this:
http://66.98.248.63/exploit.htm
using chm at http://66.98.248.63/EXPLOIT.CHM
which loads and hahahahahahahas this file http://66.98.248.63/exploit.exe

dont click/open any of those urls.. trojans!

the latest norton antivirus did not find anyhting wrong with this exe, so its either a custom coded trojan or a very new trojan.

we are working on the problem.
sorry for the problems.

any help (on who this IP belongs to for example) is greatly appreciated
__________________
M3Server - NATS Hosting
JamesK is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote