Good software doing bad things 2

Filed Under: SophosLabs

Recently, my "Oh-So-Smart" colleague <3 Pete <3, highlighted Good Software Doing Bad Things and I was truly inspired and impressed. Thus, I went hunting. Hunting for other good software doing bad things. Now, I have a sequel to his excellent blog. In part 2, which I un-creatively penned, it relates to AutoIt archives doing memory injection.

Getting the handle to WriteProcessMemory with a AutoIT script.

The malware author has taken pains to pick up AutoIT scripting and hand crafting this malicious mutant. Fortunately, like all superhero or action movies, The S-Team wins. :)

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title="" rel=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <pre> <q cite=""> <strike> <strong>