For Programmers: Free Programming Magazines  


Home > Archive > Extreme Programming > August 2004 > Sclog.b









You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

 

Author Sclog.b
kungfujesus

2004-08-17, 1:03 am

ok, well this isn't "extreme". But I'd like to know what that trojan is written in. I can't find the pages for it, and I need to decrypt this infected file in order to know who it mails the logs to. Anybody have any idea?

I have some of the source, although much of it is encrypted

Here's an image of it in emacs http://hardrocker.kicks-XXX.net/images/snapshotvirus.png

Here's that buffer saved as a text document

http://hardrocker.kicks-XXX.net/downloads/Glad.txt

I'll post the .zip as well, although I warn you, DO NOT RUN IT...
kungfujesus

2004-08-17, 1:07 am

hmm, apparently it edits my DNS, lol. I'll post it via IP, hold on...


http://216.68.191.5/images/snapshotvirus.png

Here's a lil more info on the virus
http://vil.nai.com/vil/content/v_99916.htm
Sponsored Links







Also available: Server administration forum archive | Web Design forum archive | Software forum archive | Hardware reviews archive

Copyright 2008 codecomments.com