02 March 2006 | 12,134 views

Norton Antivirus Funny Bug

Want to Learn Penetration Testing

the following exploits (if we can call it this way) was published on securityfocus bugtraq mailinglist… it is entirely reproduced in the following lines:

Norton Internet monitoring tools issues
Versions Affected : *
Fix : No

What im writing about is how to stop the internet of some user that is
using the norton tools and IRC / any other chat at the same time.

By default norton monitor checks for words like “keylogger” , “start
keylogger” , “key logger” and etc.etc.

Example for irc :
Start a mIRC or any other IRC client that u like and connect to some
server.
Type down /ctcp yournick start keylogger . By default norton monitors
your mIRC Process and your logs of it so it sees “star keylogger” and
automaticly blocks mIRC.exe from starting and automaticly blocks port
6667 or whatever port ure using to connect to IRC. Nice eh ?

Aleksander Hristov

So you should be in a small manner paranoic when using Norton tools…

Post to Twitter Post to Facebook Post to Google Buzz Post to Delicious Post to Digg Post to Reddit Post to StumbleUpon






Recent in General Hacking:
- Security By Obscurity Not So Bad After All?
- MagicTree v1.0 Released – Productivity Tool For Penetration Testers
- Coliseum Lab By eLearnSecurity – Web Application Security Lab

Related Posts:
- Norton Internet Security ‘Keylogger’ IRC Bug
- Anti-Spyware Software Wars – Can’t they get along?!
- Multiple Bugs In Anti-Virus Software Revealed

Most Read in General Hacking:
- 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) - 1,042,361 views
- Hack Tools/Exploits - 524,075 views
- Password Cracking with Rainbowcrack and Rainbow Tables - 381,968 views

Advertise on Darknet


One Response to “Norton Antivirus Funny Bug”

  1. st3f 2 March 2006 at 1:07 pm Permalink

    A very strange “feature”… I like that Norton supposedly would block any log file containing the string “format c:”.

    http://www.hm2k.org/news/1137968795.html