X-posted from our forums, originally posted there by the admin of TheRealDeal Market:
MS15-034 / CVE-2015-1635
If you are running IIS, either stop (best practice) or patch YESTERDAY.
We already have a listing for fully working RCE exploit with quite convincing technical details to back the vendor's claims. We also know of at least 2 markets running IIS.
All the best, TheRealDeal Market
> illegal online drug market
> runs IIS
I... I have no words.