@msuiche @thegrugq @Moritz30MC @x0rz @adriengnt @gentilkiwi @threatintel Threatintel report was payload, not the SMB spreader. I checked with MS, they haven't seen XP infections.

 — @GossiTheDog