
-----------------------------------
hbgator
Mon 12 Jan, 2009

Hacker Leaves Message for micros0ft in Trojan Code
-----------------------------------
Here's a new way to get Microsoft to pay attention to you:<b style="color:#FFA34F"></b> Slip a brief message into the malicious Trojan horse program you just wrote.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
That's what an unnamed Russian hacker did recently with a variation of Win32/Zlob,<b style="color:#FFA34F"></b> a Trojan program victims are being tricked into installing on their computers.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
The message is surprisingly cordial,<b style="color:#FFA34F"></b> given that Microsoft's security researchers spend their days trying to put people like Zlob's author out of business.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"Just want to say <b style="color:#FFA34F"></b>'Hello'<b style="color:#FFA34F"></b> from Russia.<b style="color:#FFA34F"></b> You are really good guys.<b style="color:#FFA34F"></b> It was a surprise for me that Microsoft can respond on threats so fast,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> the hacker wrote,<b style="color:#FFA34F"></b> adding,<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"Happy New Year,<b style="color:#FFA34F"></b> guys,<b style="color:#FFA34F"></b> and good luck!<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Zlob is one of the most common types of Trojan programs used to attack Windows these days.<b style="color:#FFA34F"></b> In a typical Zlob scam,<b style="color:#FFA34F"></b> the victim is sent a link to what looks like an interesting video.<b style="color:#FFA34F"></b> When the link is clicked,<b style="color:#FFA34F"></b> the user is told to install a multimedia codec file in order to watch the video.<b style="color:#FFA34F"></b> That file is actually malicious software.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
It's not clear whether the author of this message is the creator of Zlob,<b style="color:#FFA34F"></b> according to Joe Stewart,<b style="color:#FFA34F"></b> a researcher with SecureWorks.<b style="color:#FFA34F"></b> That's because <b style="color:#FFA34F"></b>"Zlob is one of those things that gets mislabeled by AV companies a lot,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> he said via e-mail.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"Basically any time they see malware being spread by <b style="color:#FFA34F"></b>'you need this video codec.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>'<b style="color:#FFA34F"></b> messages in multimedia files,<b style="color:#FFA34F"></b> it gets the Zlob label.<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
This isn't the first time this particular hacker has sent a note to Microsoft's security group.<b style="color:#FFA34F"></b> Last October he wrote a slightly creepy message,<b style="color:#FFA34F"></b> saying,<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"I want to see your eyes the man from Windows Defender's team.<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Unlike the October message,<b style="color:#FFA34F"></b> this latest note wasn't caught by Microsoft.<b style="color:#FFA34F"></b> It was found Friday by a French security researcher using the hacker handle S!Ri.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
According to this latest message,<b style="color:#FFA34F"></b> it may be the Zlob hacker's last note to Microsoft.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"We are closing soon,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> he wrote.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"So,<b style="color:#FFA34F"></b> you will not see some of my great <b style="color:#FFA34F"></b>;<b style="color:#FFA34F"></b>)<b style="color:#FFA34F"></b> ideas in that family of software.<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b>"It warms my heart that they're <b style="color:#FFA34F"></b>'closing soon,<b style="color:#FFA34F"></b>'<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> wrote Microsoft spokesman Tareq Saade in a blog post Friday.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
All things considered,<b style="color:#FFA34F"></b> hiding messages in source code may not be the most effective way of reaching the Windows Defender team.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"Considering the enormous amount of malware we go through every day,<b style="color:#FFA34F"></b> it can be difficult to track follow up samples like this,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> Saade wrote.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
The hacker also claimed that Microsoft had once offered him a job to help improve Windows Vista's security.<b style="color:#FFA34F"></b> Microsoft hired a large number of outside security consultants to test Vista's code before it was released in late 2006.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"It's not interesting for me,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> the hacker concluded.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"Just a life's irony.<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b>

-----------------------------------
Mop
Tue 13 Jan, 2009

Re: Hacker Leaves Message for micros0ft in Trojan Code
-----------------------------------
Sad lot <b style="color:#FFA34F"></b>,<b style="color:#FFA34F"></b> those hackers.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>:evil:<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>:evil:<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>:evil:<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Crating havoc on PC's all over the world with the click of the mouse.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
I hope a lot of them get caught and locked up.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
And no use of any PC while in there of course.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.just damn hard work that will get their soft work-wary hands full of blisters.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>:lol:<b style="color:#FFA34F"></b>

-----------------------------------
peiratns
Tue 07 Apr, 2009

Re: Hacker Leaves Message for micros0ft in Trojan Code
-----------------------------------
Mop,<b style="color:#FFA34F"></b> look-up the meaning of hacker at http:<b style="color:#FFA34F"></b>/<b style="color:#FFA34F"></b>/en.wikipedia.org/wiki/Hacker_(computer_security)<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Those people you are referring to are called <b style="color:#FFA34F"></b>"crackers"<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>

-----------------------------------
jkf
Sun 12 Apr, 2009

Re: Hacker Leaves Message for micros0ft in Trojan Code
-----------------------------------
I was just thinking.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b> its always the opposite of what we want it to be.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
as most of us find software that is cracked by hackers useful,<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
but avoid code hacked by crackers because its dangerous.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>:lol:<b style="color:#FFA34F"></b>

-----------------------------------
Mop
Mon 13 Apr, 2009

Re: Hacker Leaves Message for micros0ft in Trojan Code
-----------------------------------
I try to stay clear of that sort of software lately.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.I heard too many bad stories about them.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>.<b style="color:#FFA34F"></b>;<b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b>)<b style="color:#FFA34F"></b>)<b style="color:#FFA34F"></b>
