Home > ParetoLogic Blogs > Malware Diaries > Free rider
Reply
 
Thread Tools Display Modes
  #1  
Old 09-05-2008, 12:57 AM
Michael Michael is offline
Administrator
Join Date: May 2007
Posts: 313
Default Free rider

A 404 is an expression*that*indicates an error when you try to access a page that does not exist.

But as I found out, many hackers use a 404 template to hide something nasty. The screenshot below shows you the page you will see when browsing that website. It looks like a typical error message. But underneath you will see the source code of that same page. The source code is made of Html tags which make up a webpage. Now, you may not be familiar with JavaScript, but you will recognize the text as incomprehensible. It is indeed obfuscated in order to evade classic AV detection, and it will execute a nasty payload.

By using such a disguise, the malware author hopes to be a "free rider" for some time, utilizing someone else's ressources while benefitting from them.



*

JSegura
Reply With Quote
  #2  
Old 09-16-2008, 02:19 PM
proslaviy proslaviy is offline
Junior Member
Join Date: Sep 2008
Posts: 1
Default How o send Pm?

Hi, how I can send PM?
Reply With Quote
Reply

« Previous Thread | Next Thread »

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump


Terms of Use