[Cryptography] rare sighting of that shy beast known as steganography:

Ian G iang at iang.org
Sun May 17 15:15:59 EDT 2015


" The Trojan, TROJ_YAHOYAH, eventually downloads and decrypts a 
malicious image or decoy file. The downloaded images appear harmless and 
look similar to default wallpapers in Windows XP systems. However, 
encrypted into them via simple steganography is BKDR_YAHAMAM, a malware 
that steals data from the system, kills processes and services, deletes 
files and directories, puts systems to sleep, and performs other 
backdoor capabilities."

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20150517/355b1868/attachment.html>

More information about the cryptography mailing list