Malware Domain List
February 09, 2010, 02:05:10 am *
Welcome, Guest. Please login or register.

Login with username, password and session length
News:
 
   Home   Help Search Login Register  
Pages: [1]
  Print  
Author Topic: Zeus v.1.0.3.7  (Read 916 times)
0 Members and 1 Guest are viewing this topic.
XzifT
Newbie
*
Posts: 4


« on: February 23, 2008, 02:57:43 pm »

Pretty sure this is the PRG/WNSPOEM trojan everyone is concerned with Smiley.  Figured I'd contribute something back to this great site.

_hxxp://rapidshare.com/files/94324782/zeus_v1.0.3.7.rar.html

Logged
sowhat-x
Guest
« Reply #1 on: February 23, 2008, 09:28:37 pm »

Welcome on board,XzifTSmiley

...some moment in late December,
I had also seen a (supposedly) scrambler meant especially for Zeus samples...
I say 'supposedly',because I hadn't really managed to test it:
executable itself was that much badly packed,that no matter my efforts,
I couldn't get it to run at all,lol...  Grin

Pretty much most of the infamous skiddie tools gathered in a single thread...
Quote
hxxps://forum.zloy.org/showthread.php?t=7951

...what REALLY makes me wonder is:
why in the world it takes that long for some AV companies,
in order to spot/detect variants of this kind of stuff/builders...
when they can be found simply by monitoring 6-7 widely known 'haxor' forums.
Kind of funny attitude actually...from the one hand,
you have serious and hard-working AV researchers/employees taking down infected hosts,
and on the other hand,AV companies' general policy,
towards the widely known to the public "main" distribution forums/sites,
is to either ignore them,or even worse,to leave them completely 'untouched'...

No need for 'dark' speculations and assumptions here,just my 2 cents towards this situation:
when at this moment,even the most non-technical aware end-user,
can find point-and-click botnet builders within a few minutes of googling...
then it's also at least ridiculous afterwards to see AV companies complain,
because a large majority of end-users claims that AVs generate malware themselves,
in order to make money...
If they don't want to hear such ridiculous statements,well,it's their responsibility:
advertisements regarding 'improved intrusion prevention' modules,bla-blah etc...
All these are nice and well,and obviously no one disagrees:
end-users also don't like the view of tons of vx/skiddie forums,
where automated botnet/trojan builders and rest of crap gets exchanged...
Even say from a strictly commercial respective,
trust gets builded exactly from these common daily facts - simple as that.
Logged
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC Valid XHTML 1.0! Valid CSS!
Page created in 0.046 seconds with 19 queries.

Google visited last this page February 02, 2010, 09:56:58 pm