New MBR rootkit goes undetected

Discussion in 'other anti-virus software' started by MAOS, Apr 13, 2009.

Thread Status:
Not open for further replies.
  1. Bob

    Bob Registered Member

    Joined:
    Apr 29, 2002
    Posts:
    49
    Are these rootkits only a problem for 32-bit systems
    or can they now also infect vista 64-bit?
     
  2. vijayind

    vijayind Registered Member

    Joined:
    Aug 9, 2008
    Posts:
    1,413
  3. steve1955

    steve1955 Registered Member

    Joined:
    Feb 7, 2004
    Posts:
    1,384
    Location:
    Sunny(in my dreams)Manchester,England
    Perhaps the best idea is fill your HD with security apps so there's no room for any malware!
     
  4. MAOS

    MAOS Registered Member

    Joined:
    Apr 13, 2009
    Posts:
    15
    I just got the RSS feed report

    http://www.prevx.com/blog/131/MBR-Rootkit-reloaded.html

     
  5. Baz_kasp

    Baz_kasp Registered Member

    Joined:
    May 1, 2008
    Posts:
    593
    Location:
    London

    I assume if prevx is so worried about the lack of detection by other security vendors they have shared samples with the security community to combat such a "dangerous" threat....unless they are going to pull a "Dr.Web" :rolleyes:
     
    Last edited: May 29, 2009
  6. EraserHW

    EraserHW Malware Expert

    Joined:
    Oct 19, 2005
    Posts:
    588
    Location:
    Italy
    Right :) I can assure you I personally shared all the samples I have with all companies that asked me for them. Sure, I'm not going to hunt for every single e-mail contact inside every single company and send samples in a spam-like way :) If anyone from security vendors want them, just ask for them :) I think it's the best way for everyone
     
    Last edited: May 29, 2009
  7. Baz_kasp

    Baz_kasp Registered Member

    Joined:
    May 1, 2008
    Posts:
    593
    Location:
    London
    I think we both know about a certain place(s) where vendors meet for malware researching, makes sense to lay them out in there perhaps....I mean of course this is great that you found it and congratulations on the technical knowledge, props for being the first.... but if its something revolutionary collective intelligence is better than none.
     
  8. EraserHW

    EraserHW Malware Expert

    Joined:
    Oct 19, 2005
    Posts:
    588
    Location:
    Italy
    As you may know, inside certain places samples are available since April :) So they have been always available to everyone ;)
     
  9. Baz_kasp

    Baz_kasp Registered Member

    Joined:
    May 1, 2008
    Posts:
    593
    Location:
    London

    In which case I apologise since I missed that. :thumb:
     
  10. EraserHW

    EraserHW Malware Expert

    Joined:
    Oct 19, 2005
    Posts:
    588
    Location:
    Italy
    No problem at all :) You're more than welcome :thumb:
     
  11. developers

    developers Registered Member

    Joined:
    Apr 1, 2009
    Posts:
    62
    No, it's vulnerable.
     
  12. MAOS

    MAOS Registered Member

    Joined:
    Apr 13, 2009
    Posts:
    15
  13. format_c

    format_c Registered Member

    Joined:
    May 6, 2008
    Posts:
    116
  14. TonyW

    TonyW Registered Member

    Joined:
    Oct 12, 2005
    Posts:
    2,741
    Location:
    UK
    Interesting analysis by Sergey Golovanov at KL here.
     
  15. raven211

    raven211 Registered Member

    Joined:
    May 4, 2005
    Posts:
    2,567
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.