Which looks like short retelling of several pages of this topic :)
However since they posted it first from AV - they have a PR :)
and we have signature and detection/way to removal:)))
A forum for reverse engineering, OS internals and malware analysis
Even the rootkit build version changed from 3.2723while it is
[main]Hurry up PR-division!! Somebody posted in that thread, it's time to post new "article"! Let's copy-paste this thread to Word.
version=3.273
Well, the last version of TDL3 was released months ago and documented as build 3.273
Even the rootkit build version changed from 3.2723 to 0.02I don't see the reason to go against Prevx. If not Prevx, it was Kaspersky, or Dr.Web, or Symantec ;)
USForce wrote:I don't see the reason to go against Prevx. If not Prevx, it was Kaspersky, or Dr.Web, or Symantec ;)Nope, we will write an analyzing paper (maybe), but not a like a PrevX.
USForce wrote:Guys, it's clearly an error when writing :) I am the first who harshly criticize Prevx when needed, but this time it's only a mistake :)Yes, I think this is just a simple typing error - nothing to worry about
Well, the last version of TDL3 was released months ago and documented as build 3.273Even the rootkit build version changed from 3.2723 to 0.02I don't see the reason to go against Prevx. If not Prevx, it was Kaspersky, or Dr.Web, or Symantec ;)
(BTW, really easy to detect and fix this variant :geek: )
sww wrote:Nope, we will write an analyzing paper...Looking forward to seeing it ;)
Please don't use inappropriate language on the forums.PX5, sww