Section: .. / papers / virus /
| /// File Name: |
vrg01.html |
Description:
|
Interesting write up discussing the infection of Mach-O files including a link to the MachoMan virus.
| | Author: | roy g biv | | Homepage: | http://vx.netlux.org/lib/vrg01.html | | File Size: | 9471 | | Last Modified: | Nov 7 00:54:03 2006 |
| MD5 Checksum: | f24ef57ac688b677b0d4207e5cbb650f |
|
| /// File Name: |
grams.html |
Description:
|
Full analysis of the Win32.Grams trojan. It differs from previous E-Gold phishing trojans in that it does not steal credentials instead uses the victim's own browser to siphon all the E-Gold directly from their account to another E-Gold account, using OLE automation. This would completely bypass all the new authentication methods financial institutions are using to thwart keystroke loggers/password stealers, because the trojan simply lets the user do the authentication, then takes over from there.
| | Author: | Joe Stewart | | Homepage: | http://www.lurhq.com/grams.html | | File Size: | 9002 | | Last Modified: | Nov 12 19:43:06 2004 |
| MD5 Checksum: | 595a24440e3a2c58515e37bc9c53b38e |
|
| /// File Name: |
bofra_overview.txt |
Description:
|
Brief analysis of the Bofra, aka MyDoom.AG/AH, worm that was first discovered circulating in the wild November 8th.
| | Author: | Bryan Burns | | File Size: | 7826 | | Last Modified: | Nov 20 16:56:06 2004 |
| MD5 Checksum: | 1ada5872347d870822aec9f3feb880b6 |
|
|
|
|
|