با سلام این ابیوز رو برای بار دوم در یک هفته دریافت میکنم
کد:
Dear Sir or Madam,
from trusted external sources, CERT-Bund received information on IP addresses geolocated in Germany which are most likely hosting a system infected with malware.
Affected systems on your network:
Format: ASN | IP | Timestamp (UTC) | Malware | SRC port | DST ip | DST port | DST host | Proto
24940 | ip.ip.ip.ip| 2019-10-29 00:26:20 | magecart | 42348 | 208.100.26.251 | 443 | cloud-wp.org |
Most of the malware families reported here include functions for identity theft (harvesting of usernames and passwords) and/or online-banking fraud.
We would like to ask you to check the issues reported and to take appropriate steps to get the infected hosts cleaned up or notify your customers accordingly.
Additional information on this notification is available at: This message is digitally signed using PGP.
Information on the signature key is available at: Please note: This is an automatically generated message. Replies to the sender address will NOT be read but silently be discarded.
In case of questions, please contact and keep the ticket number [CB-Report#...] of this message in the subject line.
!! Please make sure to consult our
HOWTOs and FAQ available at !! first.
Mit freundlichen Gren / Kind regards Team CERT-Bund Bundesamt fr Sicherheit in der Informationstechnik Federal Office for Information Security (BSI) Referat OC23 - CERT-Bund Godesberger Allee 185-189, 53175 Bonn, Germany
آیا کسی مشابه اینو قبلا دریافت کرده؟ ظاهرا بدافزار هست به اسم magecart که یه کد جاوا اسکریپتی هست که اکانت های paypal رو سرقت میکنه.حالا کدوم سایت ها رو آلوده کرده نمیدونم! ولی طاهرا بیشتر سراغ فروشگاه های مجنتو میره که ما روی سرور نداریم در هر صورت اگه دوست بزرگواری تجربه ای در این خصوص داره ما رو هم راهنمایی کنه