Signed infector that was mentioned here http://www.securelist.com/en/blog/20819 ... identified
And here http://www.symantec.com/connect/blogs/w ... man-middle
MD5: 1f61d280067e2564999cac20e386041c
SHA1: d36fad73c6aeff98906008f3eb5a16812cc3188a
File size: 29928 bytes
Name: WuSetupV.exe
Microsoft Security Advisory (2718704) Unauthorized Digital Certificates Could Allow Spoofing
http://technet.microsoft.com/en-us/secu ... ry/2718704
http://support.microsoft.com/kb/2718704
And here http://www.symantec.com/connect/blogs/w ... man-middle
MD5: 1f61d280067e2564999cac20e386041c
SHA1: d36fad73c6aeff98906008f3eb5a16812cc3188a
File size: 29928 bytes
Name: WuSetupV.exe
signers..................: MSCertificate already was revoked and update was released:
Microsoft LSRA PA
Microsoft Enforced Licensing Registration Authority CA
Microsoft Enforced Licensing Intermediate PCA
Microsoft Root Authority
signing date.............: 3:54 PM 12/28/2010
Microsoft Security Advisory (2718704) Unauthorized Digital Certificates Could Allow Spoofing
http://technet.microsoft.com/en-us/secu ... ry/2718704
http://support.microsoft.com/kb/2718704
Attachments
pass:infected
(16.26 KiB) Downloaded 114 times
(16.26 KiB) Downloaded 114 times