Dll Download

Steam_api Dll Trojan ?

A quick search of the interwebs unveiled a rather novel approach from Sergey Babkin. The technique uses bcdedit to create a small hive that is then "cleansed" to yield a new empty hive. It's definitely an interesting approach, but after digging further, I discovered that it was possible to explicitly save an existing registry key as a hive using the RegSaveKey function. Flink and blink are offsets in bytes, relative from the start of the hive bins data. When the...

Read more...