Dienstag, 11. Oktober 2011

backdoor: case "R2D2"

...in bayern hams koa problem mit der anwendung :-)
The announcement was made public on ccc.de with a detailed 20-page analysis of the functionality of the malware.
Download the report in PDF (in German).

The name R2D2 comes from a string inside the trojan: "C3PO-r2d2-POE". This string is used internally by the trojan to initiate data transmission.

