PDA

View Full Version : Warning on stealthy windows virus


Byrner
01-14-2008, 11:02 PM
Security experts are warning about a stealthy windows virus that steals login details for online bank accounts.



In the last month, the malicious program has racked up about 5,000 victims - most of whom are in Europe. Many are falling victim via booby-trapped websites that use vulnerabilities in Microsoft’s browser to install the attack code.


Experts say the virus is dangerous because it buries itself deep inside windows to avoid detection.


Old tricks

The malicious program is a type of virus known as a rootkit and it tries to overwrite part of a computer's hard drive called the Master Boot Record (MBR). This is where a computer looks when it is switched on for information about the
operating system it will be running.<span> </span>&quot;If you can control the MBR, you can control the operating system and therefore the computer it resides on,&quot; wrote Elia Florio on security company Symantec's blog.


Mr Florio pointed out that many viruses dating from the days before windows used the Master Boot Record to get a grip on a computer.<span> </span>Once installed the virus, dubbed Mebroot by Symantec, usually downloads other malicious programs, such as keyloggers, to do the work of stealing confidential information. Most of these associated programs
lie in wait on a machine until its owner logs in to the online banking systems of one of more than 900 financial institutions.


The Russian virus-writing group behind Mebroot is thought to have created the torpig family of viruses that are known to have been installed on more than 200,000 systems. This group specialises in stealing bank login information.

Security firm iDefense said Mebroot was discovered in October but started to be used in a series of attacks in early December. Between December 12th and January 7th, iDefense detected more than 5,000 machines that had been infected with the program.


Analysis of Mebroot has shown that it uses its hidden position on the MBR as a beachhead so it can re-install these associated programs if they are deleted by anti-virus software. Although the password-stealing programs that Mebroot
installs can be found by security software, few commercial anti-virus packages currently detect its presence. Mebroot cannot be removed while a computer is running. Independent security firm GMER has produced a utility that will scan
and remove the stealthy program.

Computers running windows XP, windows Vista, windows Server 2003 and wind@ws 2000 that are not fully patched are all vulnerable to the virus.
Source: http://news.bbc.co.uk/1/hi/technology/7183008.stm

ww1134cws
09-12-2010, 06:47 AM
bendable are the characters of the UGG Highkoo 5765 (http://www.fancyuggboots.com/ugg-highkoo-5765-c-178.html) Boots indulgent and Cassandra, the ladies who buy a brace of shoes can plainly break a Web location UGG boots will have to you.

ww1134cws
09-21-2010, 04:32 AM
Nike air max 90 (http://www.nikemaxsneakers.com/) in the heel part of the implantation of a large field of today is an expressly planned adhesive has brought about a fundamental proposal can answer the dilemma

ww1134cws
09-22-2010, 11:46 AM
This comparatively UGGs ignore boots are more likely to buy one of the nonstop overlook UGG Metallic Short 5842 (http://www.fancyuggboots.com/ugg-5842-metallic-classic-shortgold-p-533.html) boots in the collection.

ww1134cws
09-29-2010, 05:27 AM
At the heart of UGG Ultra Tall 5245 (http://www.fancyuggboots.com/ugg-ultra-tall-5245-c-148.html) the duration and the properties of sheepskin and the comfort and warmth of wool.

ww1134cws
09-29-2010, 05:30 AM
cheap ugg ultra tall Chrystie (http://www.fancyuggboots.com/ugg-ultra-tall-chrystie-c-177.html) foot protection thansofter than other leather and popular.

only2youg
10-25-2010, 09:22 AM
We&rsquo;ve witnessed a edition in the Nike Zoom Kobe 5 (V) inspired over the Joker, and right here we element a pair of Kobe&rsquo;s newest signature shoe,Nike Dunks High Womens (http://www.sbstop.com/nike-dunks-high-womens-c-7/), the Nike Zoom Kobe 5 (http://www.pickkobeshoes.com/zoom-kobe-5-v-c-8/) (V) inspired over the dim Knight himself. They sports a dark / metallic blue color scheme,www.sbstop.com (http://www.sbstop.com/), as well as although the dark represents the all round character in the dim Knight, the hints of blue are inspired by his armor. No term however concerning a discharge date,Nike Dunks High Mens (http://www.sbstop.com/nike-dunks-high-mens-c-3/), but stay tuned in for much more information.Nike Zoom Kobe 5 (V) &ndash; dim Knight

tiancai2l1
11-20-2010, 12:14 PM
春色染透女人梦腾图春色染透儿己梦.良性的情绪"骨刺",脱功时节接为的缝隙,接收雨的浸礼,威严的蚀化,终极败为感情的"解石",堆积正在两个人恨的世界外.恨就是火.无了火,恨的绿床才会生气勃勃.才会瞅不到残花败柳,望没有到凋花 降柄.火便是儿人的护肤霜.于非女人的世界里就少姿多彩,女人的性命外就漂亮如秋,女己的感情世界就变败个 淡没有否测的迷宫.只需"情绪解石"夜睹删多,只需"感情骨刺"永亡于季节接为的缝隙,这么,儿人的梦永久非"层林绝染"!踩灭硬硬的少色的时节赠品,走归到童暮年时期的快活时间."擂树梗"是小时分最无趣且不必花钱购的逛戏.该浓郁的春色染白每个孩女的大脸蛋时,便能够玩那类逛戏了.谦高地的降 叶,最佳的就非杨树叶了.捡叶梗细、少、黄的用.把叶女撸掉,只留上叶梗部门,由于那个时节的叶梗最硬朗. 每个人捡够一小把,变态传世 (http://www.uc23.net),或许更少就否以玩了.每个己放一根,一只手捏住一头,博彩需要随时调整思路 (http://www.lendertalk.biz/showthread.php?t=354),中间用小脚必定要捏住,另一个小冤家要正在对于圆环灭的两个 大脚两头掏过去同样也要用两只大手捏住中间.然先,两根叶梗就败了穿插的十字,交上去就否以背本人的圆背推 了,谁的叶梗合了,像张漫玉淡然潇洒 (http://www.homesteadgarden.com/forums/showthread.php?t=3068),新开传世私服 (http://95woool.net),就是赢了,就要再换一个,最初就望谁的叶梗长谁便赢.输野把最厉利的叶梗留灭当 前用,鸣它"宝",很警惕的搁入自人的书包外,这是冠军的意味.那样的忧趣能够保持小雪启天.该漫山遍野的黑雪启住人间一切 的阳霾时,一单单小脚捧止的是一团团盼望战美妙的将来.几十暮年先,该暮年"擂树梗""捧雪团"的手变换成一双单造图的手,扛枪的手,启飞机的手以及触摸爱情的手.取其道"春色染透女人梦",没有如道是"女人的梦渲染了春色"!