First time to see MBR rootkit in the wild

Discussion in 'malware problems & news' started by aigle, Oct 11, 2008.

Thread Status:
Not open for further replies.
  1. aigle

    aigle Registered Member

    Joined:
    Dec 14, 2005
    Posts:
    11,164
    Location:
    UK / Pakistan
    Just wanted to share as I am a little bit excited after seeing this. One of my friends asked to see his PC that seemd to be infected and slowed down like a snail. It was ahving Symantec corporate AV installed and was detecting some malware plus a rootkit.

    I tried Antivir and it detected Mebroot( MBR Rootkit). Same with Gmer and Dr.Web Cureit.

    LAptop is running Vista Home( UAC was probably disabled). I have asked him to reformat and do a fesh install of OS( I assume it should rewrite the MBR). I am not sure how he managed to get it. He is using his PC mainly for voice chat on various messengers with his family members.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.