View Full Version : New virus targets IDA
gabri3l
July 12th, 2006, 13:10
W32/Gatt is a polymorphic entry point obfuscation virus that infects only scripts associated with IDA Pro. It infects IDC script files found on a machine and replicates when an infected IDC script is executed.
http://www.avertlabs.com/research/blog/?p=54
Woodmann
July 12th, 2006, 16:57
Excellent "heads up"

.
Woodmann
OHPen
May 10th, 2007, 12:30
Can someone supply the virus ?
Im interested in its' obfuscation.
Thx
OHPen
fr33ke
May 10th, 2007, 13:48
Quote:
Wednesday July 12, 2006 at 4:30 am CST |
If I remember correctly it was a POC.
OHPen
May 10th, 2007, 14:55
Oh ok, didn't know that. Thx
Silver
May 12th, 2007, 13:02
Quote:
[Originally Posted by fr33ke;65585]If I remember correctly it was a POC. |
Not surprised by that. I was going to ask exactly who the author thinks they'll catch out with this one.
If there's one group of people you generally don't want to target with malware, it's the RCE community....
Powered by vBulletin® Version 4.2.2 Copyright © 2018 vBulletin Solutions, Inc. All rights reserved.