rkhunter wrote:but is it correct point of view that "don't write anything at all"? Of course all we can to discuss any paper or something else, but seems this is criticism. If you can do something better, let's do, nope?nope it is not correct. research is always good. when it yours.
as well as playing in spies and collecting info for self-promo company this guy loves to do. look at his blogpost again - what he actually did or may be found new?
WMI antivm?
nope. phaeton posted here MUCH more and MUCH detailed. as well as how to bypass this.
figured out this is just updated old rootkit and did this first?
nope. he STILL in doubt - look at name of post.
provided info how to detect presense of this rootkit by system anomalies?
nope. Eset SysInspector anyone?
provided cleaning instructions?
nope. why bother - buy our sh..product and fcuk with it
posted anything about affilate who behind it?
nope.
can continue but tired typing
did self and company promotion?
YEAH. everybody now knows - ESET always looking forward for new threats (no matter if they found it reading public forums).
Hell they did it, facepalm.