Home > Support > Global Security Advisor 

Spyware Detail

Hunab Ku

Date Published:
Monday, August 16, 2004

Threat Assessment

Overall Risk: High
Privacy: Medium
Productivity:
System Integrity: High

Description


Vendor Description

This is my new project, It binds a BO2K file to a semi-polimorphic file to protect your BO2K of the any scaners that can detect it. This is my first test to do a EXE Packer, but I want to do a full solution for BO2K. The future of this project is very amazing and I will create a package that do to the BO2K very stealthily to any AV Scanner, but the success of this project depends on the help that you offer me, mainly in: Beta-testing, Bug reports, Suggestions and Comments and probably (BO2K Devs) changing the code.... Hunab Ku at this moment only binds a file BO2K (contrary to SilkRope and GoldenCow that can binds to BO file and a program) to a Decryptor file, since at the moment only I want to protect at the BO2K of the any AV Scanners. * Don't hope that Hunab Ku works with any Executable, Hunab Ku will be an exclusive technology of BO2K!. Simple as this and nothing else.

Category

RAT:  A Remote Administration Tool, or RAT, is a Trojan that when run, provides an attacker with the capability of remotely controlling a machine via a ""client"" in the attacker's machine, and a ""server"" in the victim's machine. Examples include Back Orifice, NetBus, SubSeven, and Hack'a'tack. What happens when a server is installed in a victim's machine depends on the capabilities of the trojan, the interests of the attacker, and whether or not control of the server is ever gained by another attacker -- who might have entirely different interests. Infections by remote administration Trojans on Windows machines are becoming as frequent as viruses. One common vector is through File and Print Sharing, when home users inadvertently open up their system to the rest of the world. If an attacker has access to the hard-drive, he/she can place the trojan in the startup folder. This will run the trojan the next time the user logs in. Another common vector is when the attacker simply e-mails the trojan to the user along with a social engineering hack that convinces the user to run it against their better judgment.



Immediate Protection Info

 
DAT Release Product DAT Version
OriginaleTrust PestPatrol v5
eTrust PestPatrol v4
CA Antispyware v9
eTrust PestPatrol v8
CA Antispyware v9
08 11 2004
08 11 2004
08 11 2004
08 11 2004
02 17 2009
LatestCA Antispyware v9
eTrust PestPatrol v5
eTrust PestPatrol v4
eTrust PestPatrol v8
11 09 2009
07 09 2009
01 11 2007
07 09 2009
 


View Full Details

CA Global Security Advisor

Current threat condition: Low
Low
Find Threats
Viruses Spyware
Vulnerabilities All
 
 
Page Tools