|
Looks like this is the truth... This html is sending you to that banking site and using their security flow in url, to redirect to god-knows-whose location and to grab visitor's user:pass for their banking accounts... root is already contacted...
I'm still unable to find out which mechanism they used to inject that worm. Was that Blogger's bug or my server's Apache is exploitable?
__________________
---
Busy ranking websites on Google...
|