funsec mailing list archives

Revenge of the Nerds Part II


From: "Dude VanWinkle" <dudevanwinkle () gmail com>
Date: Wed, 8 Nov 2006 19:20:12 -0500

Speaking of malware authors taking their frustrations out on researchers:

from: http://www.computerworld.com.au/index.php/id;977780789;fp;16;fpid;1

On Sept. 20, Gromozon's authors released a revised set of malware
containing a rootkit which attempted to block sites -- Prevx included
-- that had announced filters protecting against it. Prevx released a
further tool within days to counter the rootkit subversion, only to
discover that subsequent attacks now featured an extraordinary direct
attack on the company itself. Anyone attempting to block the tool with
anti-malware programs from a range of security companies would be
confronted with a dialog box that claimed to be from Prevx, and one of
its researchers, Marco Giuliani.

"This program was blocked by our advertisement tool. Please visit
http://www.REMOVED.com and make donation. Thanks for cooperation.
Marco Giuliani & Prevx.com Team," it read. There were also references
to Prevx embedded in files used by the program, designed to confuse
users.

-------------------------


 thats hilarious :-)
-JP
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: