الخبر من موقع لينكس دوت كوم :
الرابطاقتباسAccording to an article on ServerTune.com, the exploit involves a rootkit installed on the compromised server that replaces several system binaries with infected versions. When the system is booted, the infected binaries are executed, and as a result, dynamically created JavaScript payloads are randomly and intermittently served to site visitors. The malware JavaScript attempts to exploit vulnerabilites in Windows, QuickTime, and Yahoo! Messenger on the visitor's machine in order to infect them.
وتبعاٌ للخبر :في السرفرات المصابة لا يمكن إنشاء مجلد يحتوي في بدايته على أرقام
mkdir 1
