giovedì 1 ottobre 2009

Swimming into Trojan and Rootkit GameThief.Win32.Magania Hostile Code

Hi,

Here you can read my last paper.

Trojan-GameThief.Win32.Magania, according to Kaspersky naming convention, monitors the user activities trying to obtain valuable information from the affected user, especially about gaming login accounts. This long tutorial analyze this malware but is also a general document which explains how to analyze a modern nested-dolls malware.


http://www.accessroot.com/arteam/site/download.php?view.313

2 commenti:

Anonimo ha detto...

good analisys!, you can put the steps and tools for malware analisys?, what tools you use?, I hope more malware analisys ;)

Evilcry ha detto...

Hi,

thanks, sure.

Steps are the paper itself, tools are Olly, IDA Pro, Syser for kernel mode part, CFF for PE inspections :)

Regards,
Giuseppe 'Evilcry' Bonfa'

Posta un commento