coffee
Well-Known Member
- Reaction score
- 1,832
- Location
- United States
Just finishing up a compromised win 7 pro computer and was looking at how they were accessing the computer (according to the customer) and found a plugin called "Citrix Reciever" installed in firefox. I know this is not a normal plugin as doing a search for it in the 'add plugins' comes up with nothing. I am familiar with citrix for remote work and figured they used this to get in. RDP is off on the computer and this is a residential computer. Its not in a business environment.
To be sure, Does anyone know if any apps install this program to run? Something like itunes maybe or something? Or do you expressly have to install it and basically know what you are doing? I figure this is how they were getting in.
All scans for malware and viruses / rootkits came back clean.
To be sure, Does anyone know if any apps install this program to run? Something like itunes maybe or something? Or do you expressly have to install it and basically know what you are doing? I figure this is how they were getting in.
All scans for malware and viruses / rootkits came back clean.