Cauta


Baga mailu`:


Si vezi ca mailu` e ala cu @ si fara www in fatza, da ?

-

Dziobas Rar Player trojan

Aprilie 5, 2008 , 1:16 pm

Dziobas Rar Player despre care va povesteam, e detectat acum de NOD32 ca . Personal, cred ca NOD32 o suge si se va rezolva cu urmatorul update.

Despre: , , , , ,

Scris de admin in IT&C Related | (1) Comentariu

Trojan.Mebroot

Ianuarie 14, 2008 , 7:36 pm

Aflu de la Chip de Trojan.Mebroot
Symantec zice ca:

When the is executed, creates the following mutex so that only one instance of is running on the compromised computer at any time:
Global\7BC8413E-DEF5-4BF6-9530-9EAD7F45338B

then reads the Master Boot Record (MBR) and then scans the partition table to find the active boot partition of the computer.

The infects the MBR, copying the original MBR to sector 62 on the hard disk.

then installs its own kernel loader to sectors 60 and 61 of the hard disk.

Next, copies a rootkit driver near the end of the active boot partition. The overwrites around 1149 sectors (467 KB) when copying the driver.

Next, the creates a .dll file in the current folder where is executed and then runs the following command:
regsvr32 /s [ FILE NAME].dll

si ca:

Systems Affected: XP, Vista, Server 2003, 2000

Logic ar fi ca daca ai un LILO sau GRUB in MBR cu toate ca ai si , sa te doara`n pai?pe, nu?

Despre: , , , , ,

Scris de admin in IT&C Related, Linux, m$ | (5) Comentarii

Sorry, nexam post-uri.

Comentarii recente:

Ultimele mesaje

-
Link Exchange - Directory - Windows Hosting

Stiri IT & C Politica Financiar Muzica Sport Sanatate Monden Cultura