Home page logo

fulldisclosure logo Full Disclosure mailing list archives

RE: interesting trojan found
From: "Willem Koenings" <isec () europe com>
Date: Thu, 21 Oct 2004 09:22:37 -0500


But if it is a rootkit, does it not hide from normal AV scanning?

It's more like a worm. But it hides its presence in the file
system, when it's active - dirlist doesn't show it, so you can't
scan it like a file.

all the best,


Sign-up for Ads Free at Mail.com

Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]