|
By Help Net Security
|
|
|
2009-12-10 16:48:18
|
ScanSafe reports that the injected iframe loads malicious content from 318x.com, which eventually leads to the installation of a rootkit-enabled variant of the Buzus backdoor trojan. A Google search on the iframe resulted in over 132,000 hits as of December 10, 2009.
Infection sequence
Injected iframe -
|
Tags |
backdoor Buzus DarkReading rootkit SQLinjection trojan |
|