Now that the Mebroot rootkit has been around for a few days, (named by symantec) does anyone have any idea which other AV's recognise it? I guess the problem is that so many of them give the virus different names, AVG did not recognise it under mebroot when I tried it, so does it use a different name for it? If anyone has any ideas's I would greatly appreciate it. Thanks in advance, Rollers
kaspersky backdoor.win32.sinowal.a or Trojan.Win32.Agent.dsj (version 7/8 called it the first, the virustotal scanner the second name) eset: Win32/Agent.DSJ
Does anyone know if HIPS or any other anti-keylogger can protect against the keylogging mechanism of StealthMBR? Is anyone able to post a screen of the client/control console of this beast?