Sunday, January 24, 2010

CVE-2010-0249 in the wild – part 0.2

hxxxxp://www.qvodcom1.com/360/ie2.htm
(AS30058 FDCSERVERS AS for FDC Servers)

ss0003245 Click to enlarge

Malzilla and MDecoder output:

ss0003244 Click to enlarge

Wepawet analysis for hxxp://www.qvodcom1.com/360/ie2.htm:

http://wepawet.cs.ucsb.edu/view.php?hash=df830232d7e8735d15ead31b6835c30d&t=1264092203&type=js

(this post is under update)

2 comments:

  1. This comment has been removed by the author.

    ReplyDelete
  2. Hi. Good stuff here. I'd like to ask you a couple of questions about one or two posts you have below. Can you please drop me an email with your best email address?

    I'm at krebsonsecurity at gmail dot com

    Thanks.

    Bk

    ReplyDelete