Archive for the 'News' Category

“New Gromozon” and Rootkit.DialCall

Monday, November 20th, 2006

Mark Giuliani has updated his blog with a posting entitled “New Gromozon” and Rootkit.DialCall. It is written in Italian but the essence of it seems to be that a the Gromozon server redirections have changed and that previously known Premium Dialer called Rootkit.Dialcall is being spread via the same servers that the Gromozon rootkit is being sent out from.

It does not mean that Gromozon and Rootkit.DialCall are linked. The latest Rootkit.DialCall drops a Premium Rate dialer that dials numbers in Italy only. Gromozon did the same.

Mark goes on to say that the Rootkit.DialCall characteristics have changed and drops the rootkit PE386 which uses ADS ( Alternative Data Streams ) to hide. Users who think they have this rootkit can use GMER to remove it.

Marks Blog - Italian

English Translation via Google

What we can see here are the ever evolving tactics of a crime gang directed at Italian internet users.

It will be intersting to see how it all unfolds!

Keep Safe

regards
Steo
www.antirootkit.com

Rootkits on your Soundcard? Could be!

Sunday, November 19th, 2006

If you are reading this Blog, you don’t have the latest Gromozon Rootkit

Wednesday, November 8th, 2006

New Version of GMER released - 1.0.12

Monday, November 6th, 2006

Linux Anti Rootkit - Zeppoo 0.0.4 released

Saturday, November 4th, 2006

Do 1.28 Million computers have a Rootkit?

Saturday, November 4th, 2006