[prev in list] [next in list] [prev in thread] [next in thread] 

List:       full-disclosure
Subject:    [Full-disclosure] Rootkit Golden (from Hacker Defender)
From:       "Leeuwen, Allan van" <allan.vanleeuwen () orangemail ! nl>
Date:       2005-03-31 8:49:45
Message-ID: 88001FC5C453764CA6597FB298742494253322 () SVEX03 ! dutchtone ! nl
[Download RAW message or body]

--===============0108098119==
content-class: urn:content-classes:message
Content-Transfer-Encoding: 7bit
Content-Type: multipart/alternative;
	boundary="----_=_NextPart_001_01C535CE.96C2E6A6"

This is a multi-part message in MIME format.


Hacker defender seems to have released a new version of his rootkit
(available for 'only' 390 euros).
Not (yet) detected by any of the popular rootkit detectors ...
http://www.security.nl/image/330
 
and so the battle begins ....


===========================================================

De informatie opgenomen in dit bericht kan vertrouwelijk zijn en is alleen bestemd voor de \
geadresseerde. Indien u dit bericht onterecht ontvangt, wordt u verzocht de inhoud niet te \
gebruiken en de afzender direct te informeren door het bericht te retourneren. Hoewel Orange \
maatregelen heeft genomen om virussen in deze email of attachments te voorkomen, dient u ook \
zelf na te gaan of virussen aanwezig zijn aangezien Orange niet aansprakelijk is voor \
computervirussen die veroorzaakt zijn door deze email.

The information contained in this message may be confidential and is intended to be only for \
the addressee. Should you receive this message unintentionally, please do not use the contents \
herein and notify the sender immediately by return e-mail. Although Orange has taken steps to \
ensure that this email and attachments are free from any virus, you do need to verify the \
possibility of their existence as Orange can take no responsibility for any computer virus \
which might be transferred by way of this email.

===========================================================


[Attachment #3 (text/html)]

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD><TITLE>Message</TITLE>
<META http-equiv=Content-Type content="text/html; charset=us-ascii">
<META content="MSHTML 6.00.2900.2523" name=GENERATOR></HEAD>
<BODY>
<DIV><SPAN class=873534408-31032005><FONT face=Arial size=2>Hacker defender 
seems to have released a new version of his rootkit (available for 'only' 390 
euros).</FONT></SPAN></DIV>
<DIV><SPAN class=873534408-31032005><FONT face=Arial size=2>Not (yet) detected 
by any of the popular rootkit detectors ...</FONT></SPAN></DIV>
<DIV><SPAN class=873534408-31032005><FONT face=Arial size=2><A 
href="http://www.security.nl/image/330">http://www.security.nl/image/330</A></FONT></SPAN></DIV>
 <DIV><SPAN class=873534408-31032005></SPAN>&nbsp;</DIV>
<DIV><SPAN class=873534408-31032005><FONT face=Arial size=2>and so the battle 
begins ....</FONT></SPAN></DIV><p></p><p>===========================================================<br><br>De \
informatie opgenomen in dit bericht kan vertrouwelijk zijn en is alleen bestemd voor de \
geadresseerde. Indien u dit bericht onterecht ontvangt, wordt u verzocht de inhoud niet te \
gebruiken en de afzender direct te informeren door het bericht te retourneren. Hoewel Orange \
maatregelen heeft genomen om virussen in deze email of attachments te voorkomen, dient u ook \
zelf na te gaan of virussen aanwezig zijn aangezien Orange niet aansprakelijk is voor \
computervirussen die veroorzaakt zijn door deze email.<br><br>The information contained in this \
message may be confidential and is intended to be only for the addressee. Should you receive \
this message unintentionally, please do not use the contents herein and notify the sender \
immediately by return e-mail. Although Orange has taken steps to ensure that this email and \
attachments are free from any virus, you do need to verify the possibility of their existence \
as Orange can take no responsibility for any computer virus which might be transferred by way \
of this email.<br><br>===========================================================</BODY></HTML>



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
--===============0108098119==--

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic