Tuesday, September 11, 2007

Other Malware

Things have been so focused on CME711 lately, I wanted to take a minute and remind everyone there are other problems we will be trying to track over the next several weeks.

Paperghost's blog, Vital Security got me interested in the latest Skype Worm. He linked to SpywareGuide which has a great writeup. I managed to get my hands on a copy of the binary before the end of the day. I am anxious to look at it as well.

The second interesting blog post I saw today pointed me to http:// ip.btscan.com/ jdwin /webmm /mm.htm which is encoded ASCII VBScript created to download http:// ip.btscan.com /jdwin /soft / 3e5a00d54bd4f644.exe. (Spaces added to keep from accidental clicking)

We're going to keep our eyes on storm, but we don't want to develop tunnel vision.

0 Comments:

Post a Comment

<< Home