Mebroot
From Wikipedia, the free encyclopedia
Mebroot is an MBR based rootkit used by some botnets including Torpig.
Firewall bypass
The rootkit is able to hook to network drivers to bypass firewall.
External links
- MBR Rootkit, A New Breed of Malware F-Secure Weblog, March 2008
- From Gromozon to Mebroot - A Reflection on Rootkits Today, Prevx blog, April 2009
- Stealth MBR rootkit by GMER, January 2008
- Trojan.Mebroot Technical Details | Symantec
This article is issued from Wikipedia. The text is available under the Creative Commons Attribution/Share Alike; additional terms may apply for the media files.