Re: [Full-Disclosure] MyDoom download info.

jan.muenther_at_nruns.com
Date: 01/31/04

  • Next message: auto74651_at_hushmail.com: "[Full-Disclosure] Anyone looking to share arcane/unique/commercial OS mediums/sources"
    To: first last <randnut@hotmail.com>
    Date: Sat, 31 Jan 2004 13:38:55 +0100
    
    

    > >It actually un-UPX-ed just fine for me. What version have you been trying?
    >
    > MyDoom.B as posted by someone else on this list. UPX -d doesn't work so you
    > have to do it manually which shouldn't be a problem.

    Oh, that clarifies it - I've just been looking at a copy of .A as it came to
    me amass. Of course de-UPX'ing manually is not a problem.

    > Anyone with basic assembler knowledge could understand MyDoom and any other
    > virus.

    Well, I'd be a tad bit careful with the 'any' bit, but the recent stuff or
    your everyday malware is really not at all hard to understand, which is why
    large part of the discussions here sort of amazed me.
    What I want to say: My point exactly.

    Cheers, J.

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: auto74651_at_hushmail.com: "[Full-Disclosure] Anyone looking to share arcane/unique/commercial OS mediums/sources"

    Relevant Pages

    • Re: [Full-disclosure] Fwd: Whats going on about Pangolin
      ... Its pretty obvious if you unpack it and it comes off clean. ... and with the UPX packer unpacked. ... [Full-disclosure] What's going on about Pangolin ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Fwd: Whats going on about Pangolin
      ... and with the UPX packer unpacked. ... [Full-disclosure] What's going on about Pangolin ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Selling codes exploiting 0-days vulnerabilities
      ... How is the purchaser assured of receipt of exploit details, what sort ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Call for moderation
      ... how to make filters or sort through topics... ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • RE: [Full-Disclosure] strange traffic ?
      ... > it safe to assume that you're running some sort of AV software? ... Full-Disclosure - We believe in it. ... Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)