Full Disclosure mailing list archives

Re: Fwd: steathbomb


From: Michael Holstein <michael.holstein () csuohio edu>
Date: Fri, 26 Feb 2010 09:45:25 -0500


anyone see this and know about it? How it works and good detection?

http://www.brickhousesecurity.com/pc-computer-spy.html
  

autorun.inf is how it installs itself.

once installed, it works like any other rootkit spyware (screen grabs,
keystroke/window logger, etc).

Cheers,

Michael Holstein
Cleveland State University

PS: Brickhouse : "Why parent when you can spy?".

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: