tag:blogger.com,1999:blog-7885177434994542510.post4131233446371587117..comments2024-02-18T03:42:38.869-05:00Comments on contagio: ZeroAccess / Sirefef Rootkit - 5 fresh samplesMilahttp://www.blogger.com/profile/09472209631979859691noreply@blogger.comBlogger8125tag:blogger.com,1999:blog-7885177434994542510.post-53151800440320863162013-01-02T18:29:11.442-05:002013-01-02T18:29:11.442-05:00He meant the file z is not physically at the locat...He meant the file z is not physically at the location c:\windows\system32\zAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-62135088520226525392012-12-29T14:44:51.700-05:002012-12-29T14:44:51.700-05:00Thank you very much for these PCAPS samples !Thank you very much for these PCAPS samples !Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-59754341846079843642012-12-27T20:20:51.648-05:002012-12-27T20:20:51.648-05:00I am aware. It is not a residence. It is a proxy I...I am aware. It is not a residence. It is a proxy IP of the sandbox - if you go there, will probably find a large data center.<br />Thanks for the notice but it is ok.Milahttps://www.blogger.com/profile/09472209631979859691noreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-62219934878907403932012-12-27T17:14:01.989-05:002012-12-27T17:14:01.989-05:00was wondering if you were aware that the pcaps hav...was wondering if you were aware that the pcaps have geo IP data that reveal lat/long coordinates of a residence, you should probably take them down if they are sensitiveAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-91770954368941019042012-12-27T13:47:19.014-05:002012-12-27T13:47:19.014-05:00THX !! ;-)THX !! ;-)Moshnoreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-18163318941038291662012-12-27T00:23:16.194-05:002012-12-27T00:23:16.194-05:00you mean z? It is not like 'nothing exists'...you mean z? It is not like 'nothing exists' Milahttps://www.blogger.com/profile/09472209631979859691noreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-59796585757044932282012-12-26T09:51:10.763-05:002012-12-26T09:51:10.763-05:00ThanksThanksMalware Detectedhttps://www.blogger.com/profile/06782911444237686968noreply@blogger.comtag:blogger.com,1999:blog-7885177434994542510.post-9504038723877450192012-12-26T05:47:23.329-05:002012-12-26T05:47:23.329-05:00Thnaks For Samples,
Thing is file Module you men...Thnaks For Samples,<br /><br />Thing is file Module you mentioned in pics are not actually hidden ,they are to mislead analysis <br />They actually did not Exists,,the only overwrite<br />module pathAnonymousnoreply@blogger.com