Malicious code planted via IIS flaw

eWeek | at | by Mike

Security analysts say that the malicious code that has been infecting some Windows machines was planted via an IIS vulnerability on the Web servers that host some high-traffic sites. The attack uses vulnerabilities previously patched by Microsoft updates.

Security analysts say that the malicious code that has been infecting some Windows machines since Thursday morning was planted via an IIS (Internet Information Services) vulnerability on the Web servers that host some high-traffic sites.