TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Putting an end to Retadup: A malicious worm that infected hundreds of thousands

68 pointsby giladover 5 years ago

4 comments

zawerfover 5 years ago
&gt; we can see that the malware authors mined 53.72 XMR (~4,200 USD at the time of publishing this article) during the near month that the above address was active.<p>Anyone a little surprised by how small the profits are?<p>With control over 850,000 infected machines with an average of 2.94 cores each, I expected him to do something that will make him much more than a regular software engineering day job.
评论 #20828742 未加载
评论 #20828405 未加载
Hendriktoover 5 years ago
&gt; The authors probably weren’t sure where they stood in the tabs versus spaces argument so both tabs and spaces were used in the controller. Sometimes, the indentation of source code was so bad that it would enrage even the most forgiving software engineers.<p>absolutely barbaric
Majestic121over 5 years ago
&gt; The Gendarmerie also obtained a snapshot of the C&amp;C server’s disk from its hosting provider and shared parts of it with us so we could start to reverse engineer the contents of the C&amp;C server.<p>That&#x27;s surprising. Would full disk encryption even help to counter this ?
评论 #20829929 未加载
ga-vuover 5 years ago
Source with technical details: <a href="https:&#x2F;&#x2F;decoded.avast.io&#x2F;janvojtesek&#x2F;putting-an-end-to-retadup-a-malicious-worm-that-infected-hundreds-of-thousands&#x2F;" rel="nofollow">https:&#x2F;&#x2F;decoded.avast.io&#x2F;janvojtesek&#x2F;putting-an-end-to-retad...</a><p>Saved you a click
评论 #20828349 未加载