Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Report: boot sector viruses and rootkits poised for comeback
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Question about HTML/Framer.Z »
« Security Software Updates 05 April 2008  
AuthorAll Replies

mysec
Premium
join:2005-11-29


4 edits
reply to Elite
Re: Report: boot sector viruses and rootkits poised for comeback

said by Elite See Profile :

A number of other antirootkit tools and AVs have varying levels of detection and removal, depending on variants.

Also, easy to prevent from installing:

1) Patching

»www.updatexp.com/mebroot.html
Mebroot has been deliberately installed at websites controlled by the criminals and targets those website visitors who have not patched their computers with the latest security updates from Microsoft.

Mebroot Spreading through High-Traffic, Compromised Web Sites
»msmvps.com/blogs/donna/archive/2···tes.aspx
Today the Italian Web site emule-italia.it had been compromised and was hosting an obfuscated script. The script, when deobfuscated, was showing an iframe pointing to ... which was redirecting users to a server hosting the Neosploit tool. Neosploit is forcing vulnerable PCs to download and install the latest version of the infamous Trojan.Mebroot.


2) White List Protection for Zero-day exploits

Ongoing IFrame attack proving difficult to kill
http://arstechnica.com/news.ars/post/20080318-ongoing-iframe-attack-proving-difficult-to-kill.html
Over the past 12 days, an IFrame injection attack that originally focused on ZDNet Asia has been spreading across the 'Net, changing targets and payloads on an almost daily basis. An iFrame (short for inline frame) is an element of HTML that's used to embed HTML from another source into a webpage.

from 2006



___________________________________________________


___________________________________________________


___________________________________________________

----
rich
Forums » Up and Running » Security » SecurityQuestion about HTML/Framer.Z »
« Security Software Updates 05 April 2008  


Saturday, 05-Dec 14:47:50 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [147] Avast Antivirus Has Gone Mad
· [127] Comcast Makes NBC Universal Acquisition Official
· [104] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [99] The Bandwidth Hog Does Not Exist
· [85] FCC Ponders Moving From PSTN To IP Voice
· [81] Latest Consumer Reports Survey Not Kind To AT&T
· [80] New Bill Aims To Limit ETFs
· [74] Sprint Defuses GPS Privacy Media Bomb
Most people now reading
· False positive in Avast! or is it real? [Security]
· Wife might have to work in.... Iowa for a few months!!! [General Questions]
· Windows 7 boot manager editing questions [Microsoft Help]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· First commercial tool to crack BitLocker arrives (Updated) [Security]
· Why do you switch distros? [All Things Unix]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· DNS options, what are YOU using? [TekSavvy]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]