Go Back   Club CDFreaks - Knowledge is Power > International Chat: General Topics > Music Download, Peer to Peer (P2P) & Legal Issues


Commercial message



Music Download, Peer to Peer (P2P) & Legal Issues Discuss, New P2P virus at International Chat: General Topics forum; http://info.drweb.com/show/2815/en Also from an anti virus expert; "That's after a long time after ZMist one of the "best" viruses i've seen. It's indeed highly complex - the encryption algo is medium difficult and the virus uses a lot of


Reply
 
Thread Tools
Old 21-04-2006   #1 (permalink)
New on Forum
 
Join Date: Apr 2006
Location: Scotland
Posts: 16
New P2P virus

http://info.drweb.com/show/2815/en

Also from an anti virus expert;

"That's after a long time after ZMist one of the "best" viruses i've seen.
It's indeed highly complex - the encryption algo is medium difficult and the virus uses a lot of tricks. I've here some samples with nice antiemulation tricks, such as code performance speed tests (meaning the virus will know when it runs in a virtual environment) and registry dummy - writing tricks, such as trying to write a random value to the registry and trying to read it later and compare it. If not equ or if it doesn't exist the virus exits. The virus is able to act as space filler, same technic was used by the tschernobyl virus already (CIH). The virus is able to use EPO functionallity, it looks for common API calls after the entry point and hooks/redirects them. Means the virus does not execute its own code/decrypter at a fixed position after the entry point."


It's apparently very difficult to clean.
JolietJake is offline   Reply With Quote
Reply

Bookmarks

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Best P2P Bestmiler Music Download, Peer to Peer (P2P) & Legal Issues 14 11-01-2006 23:19
virus defs are virus infected! a turk inside General Software 8 19-05-2003 00:17
P2p Kevin Dutch: De Woonkamer 5 15-11-2001 11:08
Virus Virus Virus Alert!!! Ice-Man Italian: Chat 11 29-05-2001 01:58


All times are GMT +2. The time now is 08:35.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0