Frank Boldewin published a very detailed, step-by-step analysis of the Rustock.B rootkit. Rustock is presumably one of the most advanced pieces of malware out there. Very nice read!
This entry was posted by Thorsten Holz on Tuesday, January 23. 2007 at 20:45.
and is filed under malware.
You can leave a response, or trackback from your own blog.
All new comments are subject to moderation before being displayed.
This weblog deals with IT-security related stuff and honeypots / honeynets in particular. In addition, the main focus is on malware and bots / botnets.
Currently, the main author is Thorsten Holz. I am one of the founders of the German Honeynet Project and a Ph.D. student at the Laboratory for Dependable Distributed Systems. You can reach me at thorsten.holz [at] gmail.com