OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-Disclosure] MyDoom download info

From: Nico Golde (niongmx.net)
Date: Sat Jan 31 2004 - 16:31:58 CST


Hallo Steve,

* Steve Wray <steve.wrayparadise.net.nz> [2004-01-31 23:00]:
> > You can always disassemble the virus, which is what people
> > will do if it's a real "popular" one such as MyDoom.
>
> IIRC there are viruses that are encrypted and are almost impossible
> to disassemble?
>
> Would that be true?
 
i think not forever.
there is a good phrack article about binary encription.
nico
--
Nico Golde nico <at> ngolde <dot> de
public key available on:
http://www.ngolde.de/gpg.html

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQFAHCzdHYflSXNkfP8RAs0DAKCdAdhotDTuLlX3jeUcDayajk0umgCfd7TY
IUmvfqmFYKA0O0J3w5VqJcA=
=fyz6
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html