Windows 2k rootkit incident, files zipped for your pleasure.
From: Drew Weaver (drew_at_orbityl.com)
Date: 06/12/03
- Previous message: DBoulineau: "Re: Request for Raw Data"
- Next in thread: John Ives: "Re: Windows 2k rootkit incident, files zipped for your pleasure."
- Reply: John Ives: "Re: Windows 2k rootkit incident, files zipped for your pleasure."
- Reply: Dan Perez: "RE: Windows 2k rootkit incident, files zipped for your pleasure."
- Maybe reply: defaillance_at_hushmail.com: "Re: Windows 2k rootkit incident, files zipped for your pleasure."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: <incidents@securityfocus.com> Date: Thu, 12 Jun 2003 11:57:23 -0400
Hi, with the help or Karl Levinson I was able to detect the presence of
a rootkit on one of my windows 2000 servers, I was able to grab the files
and zip them, so maybe we can watch for this stuff in the future, im not
sure if this rootkit has a particular name or what/not, you can get the
files here:
http://www.soul-fu.com/beenhaxxored.zip
Thanks Karl.
-Drew
----------------------------------------------------------------------------
----------------------------------------------------------------------------
- Previous message: DBoulineau: "Re: Request for Raw Data"
- Next in thread: John Ives: "Re: Windows 2k rootkit incident, files zipped for your pleasure."
- Reply: John Ives: "Re: Windows 2k rootkit incident, files zipped for your pleasure."
- Reply: Dan Perez: "RE: Windows 2k rootkit incident, files zipped for your pleasure."
- Maybe reply: defaillance_at_hushmail.com: "Re: Windows 2k rootkit incident, files zipped for your pleasure."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|