BleepingComputer.com: Privacy Components wants to Save the Hedgehogs

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Privacy Components wants to Save the Hedgehogs

#1 User is offline   Grinler 

  • Bleep Bleep!
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Admin
  • Posts: 36,603
  • Joined: 24-January 04
  • Gender:Male
  • Location:USA

Posted 18 February 2009 - 12:19 AM

On the lighter side of security reporting, it appears that a small spiny mammal called the Hedgehog is well liked by certain developers of rogue software. When analyzing a new rogue program called Privacy Components, I found a curious string embedded in two of the executables.

In two of Privacy Components files, named agent.exe and pc.exe, I found an interesting string embedded in the executable. This string read, SaveTheHedgehogs. Could the malicious and criminal developers of this rogue program have a sweet spot for these cute spiny little mammals? I guess so as shown in the executable below.




It's funny what you can find when you dig around executables; especially malware ones. It is not uncommon for malware writers to insert their own messages into their files as a way of making statements, trying to be funny, or saying goodbye. This can be seen in the farewell speech from the developers of Zlob. Regardless of the intent, it appears hedgehogs do need some rescuing and care as described at the site Epping Forest Hedgehog Rescue. So if you, like the developers, also want to help save the hedgehogs, please visit the link below.



#2 User is offline   iearldtg 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 19
  • Joined: 13-March 09

Posted 13 March 2009 - 07:59 PM

My Friend at school got this on his computer and explorer wouldnt turn on when you logged in it was one of the easier trojans to remove.However you must scan the registry after you delete it.

#3 User is offline   Platypus 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 3,198
  • Joined: 28-January 06
  • Gender:Male
  • Location:Australia

Posted 13 March 2009 - 08:12 PM

Heh, malware hedgehogs... :thumbsup:
Pleased to have been a Microsoft MVP (Windows Desktop Experience) 2007/8, 2008/9

I pressed F5, and I'm feeling refreshed...

#4 User is offline   Layback Bear 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Members
  • Posts: 1,844
  • Joined: 12-September 06
  • Gender:Male
  • Location:Northern Ohio

Posted 29 March 2009 - 09:33 AM

Grinler how did you get that information from your computer, address and disassembly

#5 User is offline   Grinler 

  • Bleep Bleep!
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Admin
  • Posts: 36,603
  • Joined: 24-January 04
  • Gender:Male
  • Location:USA

Posted 29 March 2009 - 09:39 AM

Ran it through a debugger/assembler.

#6 User is offline   Layback Bear 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Members
  • Posts: 1,844
  • Joined: 12-September 06
  • Gender:Male
  • Location:Northern Ohio

Posted 29 March 2009 - 09:51 AM

Is that a program I can down load or is it in XP command prompt.

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users