Hmmm..... Found this....
http://blog.trendmicro.com/trendlabs-security-intelligence/dns-changer-malware-sets-sights-on-home-routers/ Daniel On Tue, Apr 19, 2016 at 1:00 PM, David McSpadden <[email protected]> wrote: > Was just trying to get on a reporting server for sccm 2012 site and got > this: > > > > Virus/Malware: HTML_DNSCHA.SM > > Endpoint: WX250815231KZS > > Domain: Imcu.local\ > > File: > C:\Users\davidm\AppData\Local\Microsoft\Windows\INetCache\IE\YOB0DCZ6\A02F2G2[1].htm > > Date/Time: 4/19/2016 13:43:42 > > Result: Virus successfully detected, cannot perform the Quarantine action > > > > > > > > > > > > > > > > *David McSpadden* > > System Administrator > > Indiana Members Credit Union > > P: 317.554.8190 > > [image: Description: Description: imcu email icon] <http://imcu.com/> [image: > Description: Description: facebook email icon] > <https://www.facebook.com/IndianaMembersCU> [image: Description: > Description: twitter email icon] <https://twitter.com/IndMembersCU> > > > > [image: Description: Description: email logo] > > [image: http://www.amuletsolutions.com/images/mcp.gif] > <http://www.google.com/url?sa=i&rct=j&q=&esrc=s&source=images&cd=&cad=rja&uact=8&ved=0ahUKEwjFztf-tePJAhXK5iYKHcPtAxEQjRwIBw&url=http://www.amuletsolutions.com/awards.aspx&bvm=bv.110151844,d.amc&psig=AFQjCNHkrx8CednTEOOq4zUxYyrRUGzUsg&ust=1450459757284499> > > > > This e-mail and any files transmitted with it are property of Indiana > Members Credit Union, are confidential, and are intended solely for the use > of the individual or entity to whom this e-mail is addressed. If you are > not one of the named recipient(s) or otherwise have reason to believe that > you have received this message in error, please notify the sender and > delete this message immediately from your computer. Any other use, > retention, dissemination, forwarding, printing, or copying of this email is > strictly prohibited. > > Please consider the environment before printing this email. > -- Daniel Rodriguez [email protected]
