¤§«eDr.Web¤j¸v«Å¶Ç¥L̯à°÷°»´ú¶Ç»¡¤¤ªºRootkit:"Rustock.C"

.
³Ìªñ¦b
SunbeltªºBlog¤W¤]¬Ý¨ì¤F¬ÛÃö¤ÀªR.6/10,ESET¤]¦bBlog¤¤µo¥¬¤F¸Ó«Â¯ÙªºÂ²µu¤ÀªR
2.GIF)
.
ESET»¡³o°¦«Â¯Ù³Q»¡¦¨¬O«ÜÃø³B²zªº¤@Óµ{¦¡,¦ý¨Æ¹ê¤W¥¦©Ò¥Îªº§Þ³N¬Û·í´¶³q:
encryption
compression
imports rebuilding
relocations handling
anti-debug tricks
¨ä¤¤¥]§t¤F§Ú̱`»¡ªº:¥[´ß©M¥[ªá,¨âºØ§K±þ§Þ³N(¸Ó«Â¯ÙÁÙ¦³¨Ï¥Î¥[±K§Þ³N)

.
²q´úDr.Web¥i¯àÄÀ¥X(©Î¬O"°â¥X")¸Ó«Â¯Ùªº¼Ë¥»,§_«h¦b³o»òµuªº®É¶¡¤ºESET©MSunbelt¤£¤Ó¥i¯à¨ú±o

.
¤£¹L¦bESETªº§ó·s²M³æ¤¤,´N¤w¸g§ó·s¹L50¦¸RustockªºÅܺØ,©Î³\¥u¬O³QDr.Web"ÁÁ¨¥"¤Æ¦Ó¤w

.
ESET²µu¤ÀªR³ø§i,¥i°Ñ¦Ò:
http://www.eset.com/threat-center/blog/?p=127
[
¥»©«³Ì«á¥Ñ integear ©ó 2008-6-16 16:54 ½s¿è ]