close
After a few weeks of low activity from the Storm gang they restarted their activities earlier this week. The mails and website were the same as from September but yesterday they changed the email messages and also the website:
![storm_071012 (128k image)](https://imageproxy.pixnet.cc/imgproxy?url=https://www.f-secure.com/weblog/archives/storm_071012.jpg&width=700&height=663)
No exploits on the site right now and all the links points to SuperLaugh.exe which we detect as Email-Worm.Win32.Zhelatin.ki
![storm_071012 (128k image)](https://imageproxy.pixnet.cc/imgproxy?url=https://www.f-secure.com/weblog/archives/storm_071012.jpg&width=700&height=663)
No exploits on the site right now and all the links points to SuperLaugh.exe which we detect as Email-Worm.Win32.Zhelatin.ki
Posted by Patrik @ 02:08 GMT | Comments
http://www.f-secure.com/weblog/archives/00001291.html
全站熱搜