The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  New rootkit hides in hard drive's boot record
Time: 09:48 EST/14:48 GMT | News Source: ComputerWorld | Posted By: Michael Dragone

A rootkit that hides from Windows on the hard drive's boot sector is infecting PCs, security researchers said today. Once installed, the cloaking software is undetectable by most current antivirus programs.

Write Comment
Return to News

  Displaying 1 through 25 of 305
Last | Next
  The time now is 3:48:22 PM ET.
Any comment problems? E-mail us
#1 By 52115 (66.181.69.250) at 1/9/2008 10:41:51 AM
I guess this could happen with Linux machines as well. But the software to install this into the MBR is probably currently only Windows based.

But wouldn't BIOS MBR locks prevent this from getting installed there in the first place? I seem to remember having a computer which had this (awhile ago) and I turned it on once. Tried to install Linux and it wanted to change the MBR and it couldn't..

#2 By 2960 (72.196.195.185) at 1/9/2008 3:37:46 PM
I don't know, but I am SO tired of this crap. 25-40% of my service time is spent cleaning up after these jackels.

The whole zlob "hold your computer for ransom with continuous bogus 'you are infected' messsage until you pay us to remove it" thing has just gotten completely out of hand. It's utterly, totally criminal and is deserving of FBI involvement.

Let's put the OS in non-changeable firmware and be done with it. I'm tired of the bullshit.

TL

#3 By 20505 (216.102.144.11) at 1/9/2008 4:56:51 PM
TL,

I couldn't agree more - put the OS on a chip. Instant on. Instant off. No chance for corruption.

Makes too much sense I guess.

#4 By 37047 (99.241.35.182) at 1/9/2008 7:25:45 PM
#2, #3: The down side would be that you wouldn't be able to upgrade the OS, apply security patches or service packs, etc. But something definitely needs to be done to address this problem.

#5 By 12071 (203.185.215.144) at 1/9/2008 8:05:07 PM
It's not like boot sector viruses are anything new... why the overreactions?

#6 By 7754 (75.72.153.112) at 1/9/2008 10:56:40 PM
MBR overwrite protection is pretty standard fare on motherboards these days, isn't it?

#7 By 2960 (72.196.195.185) at 1/10/2008 7:59:14 AM
#4,

Sure you can. Firmware updates have been going on for years. They just need a secure way of locking it down so only the authorized updates will run.

At least this way you have a SINGLE point of entry that can easily be re-locked if necessary.

TL

#8 By 2960 (72.196.195.185) at 1/10/2008 11:50:32 AM
UPDATE: I was thinking about this. How to secure the firmware so updates could be done, yet only by an official entity (in this case, Microsoft).

You don't want to use passwords. Too easy to break... Automated authentication in the firmware update itself? Nope. That could be re-verse engineered, thus giving the hackers a way in.

I got it!

Since this would no doubt require new motherboard design, or at a minimum a PCI card to implement, have a button or switch on the motherboard back panel or card back panel that would require the user to press when the firmware update asks for it.

If there is fear that the firmware update may be a forgery, there would be a phone number and key displayed that the user could call to verify it's originality before pressing that button.

Rough, but workable. There are people a lot smarter than me that can work out the rest :)

TL

#9 By 8556 (12.208.163.138) at 1/11/2008 2:09:57 PM
Why not just run a command line fix mbr occasionally?

#10 By 4240821 (213.139.195.162) at 10/27/2023 6:07:32 AM
https://sexonly.top/get/b813/b813bgiwlypvxnixwde.php
https://sexonly.top/get/b824/b824jwfopmoadnokelq.php
https://sexonly.top/get/b216/b216vchyacslcynutdu.php
https://sexonly.top/get/b819/b819nwklyikqnlutcid.php
https://sexonly.top/get/b195/b195bulhvuyeogtrmlj.php
https://sexonly.top/get/b409/b409fkffrgiyvfltpln.php
https://sexonly.top/get/b42/b42bnzsahlfxiyqviw.php
https://sexonly.top/get/b831/b831atlqdgwabxiubyh.php
https://sexonly.top/get/b602/b602wtrgvkmtykambnj.php
https://sexonly.top/get/b718/b718flbwidvnczencvm.php
https://sexonly.top/get/b992/b992glvnbcnnjchgzio.php
https://sexonly.top/get/b71/b71lxgncvosstemjfe.php
https://sexonly.top/get/b977/b977ehjvfxwacixugxb.php
https://sexonly.top/get/b698/b698tbrvlehgucfpfpp.php
https://sexonly.top/get/b832/b832amxdmdhhieghrrc.php
https://sexonly.top/get/b538/b538ltadbvksdbnpoqo.php
https://sexonly.top/get/b850/b850erphkhgvxekeqre.php
https://sexonly.top/get/b736/b736hsmbwldclwhtlbe.php
https://sexonly.top/get/b642/b642acbyewtlyokyelh.php
https://sexonly.top/get/b56/b56qnkhtkawygegxmo.php
https://sexonly.top/get/b219/b219kxbuhyoqwolucay.php
https://sexonly.top/get/b554/b554hxaltbazolmgije.php
https://sexonly.top/get/b948/b948sqlfjdcnosaqjbe.php
https://sexonly.top/get/b742/b742emjcpbgxgqfncbd.php
https://sexonly.top/get/b969/b969mbplpjkmodkugzc.php
https://sexonly.top/get/b224/b224ilvcskiorrbeahv.php
https://sexonly.top/get/b977/b977fszrcnfokjhsdfr.php
https://sexonly.top/get/b934/b934hoocfmaryivyvaa.php
https://sexonly.top/get/b231/b231tjjhksjcogttuvl.php
https://sexonly.top/get/b927/b927kscmzktwatqhowg.php
https://sexonly.top/get/b822/b822stdzdgcqyjdyybh.php
https://sexonly.top/get/b51/b51kjreujkoghlfpqd.php
https://sexonly.top/get/b200/b200uulbwimpwwdoota.php
https://sexonly.top/get/b906/b906jhoxlelibpoflxq.php
https://sexonly.top/get/b18/b18qgucojvvaurnlxl.php
https://sexonly.top/get/b949/b949wziwgdutohjrska.php
https://sexonly.top/get/b507/b507sxcwhncrmncpcvn.php
https://sexonly.top/get/b390/b390ciqnjarjetedenc.php
https://sexonly.top/get/b483/b483wqyvaqbujpzoptu.php
https://sexonly.top/get/b98/b98heutemyullqireg.php
https://sexonly.top/get/b486/b486mvazbshlryfbydq.php
https://sexonly.top/get/b520/b520gnwmisqgmhlzxgn.php
https://sexonly.top/get/b321/b321rxuowtkelnrmynx.php
https://sexonly.top/get/b831/b831kkwdtuukabdlbbx.php
https://sexonly.top/get/b151/b151wjkfhfqpydyvtpy.php
https://sexonly.top/get/b588/b588xepkcoblocsfydf.php
https://sexonly.top/get/b797/b797oumslcviwlskmoi.php
https://sexonly.top/get/b89/b89jguczdmnseqxjhv.php
https://sexonly.top/get/b203/b203vnxezgfoztsjhhk.php
https://sexonly.top/get/b542/b542gnolseshpqgipdp.php

#11 By 4240821 (103.151.103.150) at 10/30/2023 4:13:45 PM
https://www.quora.com/profile/FenandoDasilva848/veronicaknows-Mathewandvictoria-Kapri_Rowe-Arden-Tate-Agatha3x-eck777-Wolffwoman-KellyAngeel-LitaPeach
https://www.quora.com/profile/BrandyTownsend9/xxMgsgirlxx-AutumnGoddess-Pakopero-aalexanal-GoddessRose_Belle-sky-sarahy-BellaSinn-TheSammyStrips-Moons
https://www.quora.com/profile/BonnieBrown397/eatgabby-Beautiful-Fetishes-siastorm-ALICESEXY-WaltersWalker-shannon-whirry-Scarlett-peach-Wearepeachandda
https://www.quora.com/profile/ChaseSong496/johanahfitgirl-FreakyChick969-GoddessSeraphina-LongHairLady-black-panther-1-SDCouple22-kikiibitch-aXXbabe
https://www.quora.com/profile/JeremyMolina696/kcatxxo-Thelovewitch-katiebrunette-Jsebel10000-Southern-Gem-Denise-and-Mike-SleepyOmega-sandycandyhot-Es
https://www.quora.com/profile/TravisTendencies174/SexiStephanie93-lis666-Princess_kitty2-simone-garza-Lis-Xxx-Cute-Laurice-Younghotbbw-SammyCandy-TurkishM
https://www.quora.com/profile/ChristyBrooks394/Sweet-Little-Lust-Bab1sn0wflak3-Official_Kali-naijabitches-india-amazonas-Goldenrain99-Chocolate_darling-b
https://www.quora.com/profile/HayleyMoore324/April-Vixen-Carrah-Rexxx-LaraRoshee-khloe-kash-BBDoubleTrouble-Gina-Gerson-Real-AlyMay710-soylubitamignon
https://www.quora.com/profile/JustinDonovan619/Angelhotoficial-Katloves69-Bella-Brookz-Sissy-Love-919-Twitch069-rubysteele-Anja-rougee-Kangs-Royal-Kitten
https://www.quora.com/profile/SarahCordova917/lilfairythot-Kaci-Star-Sexymomma13-KeilanAndLuke-avvaballerina-raveaphrodite-AmeliaIvory-Lilly-Tracy-Ali

#12 By 4240821 (103.152.17.80) at 10/31/2023 7:59:21 AM
https://app.socie.com.br/CharleneAspenTeacherD
https://app.socie.com.br/read-blog/97652
https://app.socie.com.br/KinkyBbwCurves77Jodieluvbug
https://app.socie.com.br/kitanasroseeeAnyaalexandrovna
https://app.socie.com.br/CookieBBWLissieLove
https://app.socie.com.br/RollahzAngelFace
https://app.socie.com.br/saltimami666TightNTasty
https://app.socie.com.br/CollegepeopleAimeelou97x
https://app.socie.com.br/read-blog/98109
https://app.socie.com.br/CattbhaddMinaspellbound

#13 By 4240821 (103.151.103.150) at 10/31/2023 6:23:52 PM
https://app.socie.com.br/LosAngelesCoupleGin_Fox
https://app.socie.com.br/read-blog/98302
https://app.socie.com.br/ShyGirl69Ivy8816
https://app.socie.com.br/DollyBitch1LadyLovely
https://app.socie.com.br/read-blog/98355
https://app.socie.com.br/read-blog/97430
https://app.socie.com.br/AmbartrixSolazolareal
https://app.socie.com.br/sophieshoxMargherita74
https://app.socie.com.br/read-blog/97202
https://app.socie.com.br/read-blog/97412

#14 By 4240821 (62.76.146.75) at 11/1/2023 9:04:16 AM
http://activewin.com/mac/comments.asp?ThreadIndex=7914&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=13501&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=81272&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=33573&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=27917&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=26497&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=70430&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=23224&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=83042&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=26027&Group=Last

#15 By 4240821 (109.94.218.82) at 11/2/2023 12:50:08 PM
http://activewin.com/mac/comments.asp?ThreadIndex=80883&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=21043&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=27767&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=4240&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=71863&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=21133&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=20590&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=71119&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=72389&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=38171&Group=Last

#16 By 4240821 (212.193.138.10) at 11/3/2023 12:09:41 AM
http://activewin.com/mac/comments.asp?ThreadIndex=62359&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=9283&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=17598&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2644&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=75703&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=17022&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=69972&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=5679&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2091&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=63599&Group=Last

#17 By 4240821 (109.94.216.41) at 11/4/2023 1:45:56 PM
https://hotslutss.bdsmlr.com/post/659180224
https://hotslutss.bdsmlr.com/post/650293755
https://hotslutss.bdsmlr.com/post/653522206
https://hotslutss.bdsmlr.com/post/655781024
https://hotslutss.bdsmlr.com/post/659488909
https://hotslutss.bdsmlr.com/post/659858313
https://hotslutss.bdsmlr.com/post/653003335
https://hotslutss.bdsmlr.com/post/658498517
https://hotslutss.bdsmlr.com/post/658009989
https://hotslutss.bdsmlr.com/post/659450860

#18 By 4240821 (92.119.163.194) at 11/6/2023 1:20:10 AM
https://printable-calendar.mn.co/members/19911944
https://printable-calendar.mn.co/members/19893276
https://printable-calendar.mn.co/members/19910685
https://printable-calendar.mn.co/members/19896341
https://printable-calendar.mn.co/members/19915652
https://printable-calendar.mn.co/members/19892920
https://printable-calendar.mn.co/members/19897987
https://printable-calendar.mn.co/members/19912897
https://printable-calendar.mn.co/members/19897239
https://printable-calendar.mn.co/members/19893230

#19 By 4240821 (62.76.146.75) at 11/8/2023 10:45:31 AM
https://www.hackerearth.com/@enticadbu1973
https://www.hackerearth.com/@lecbackbreathar1976
https://www.hackerearth.com/@babalinkge1984
https://www.hackerearth.com/@roathearpinggo1984
https://www.hackerearth.com/@trepsamhpearbsub1988
https://www.hackerearth.com/@tankcerlustpas1977
https://www.hackerearth.com/@deskterphoking1975
https://www.hackerearth.com/@atehoril1970
https://www.hackerearth.com/@keykrikilih1976
https://www.hackerearth.com/@bowspontuto1989

#20 By 4240821 (45.146.26.215) at 11/10/2023 3:48:52 PM
http://www.ttbizonline.com/pro/20231109071746
http://www.ttbizonline.com/pro/20231109090713
http://www.ttbizonline.com/pro/20231109123336
http://www.ttbizonline.com/pro/20231109130731
http://www.ttbizonline.com/pro/20231109193749
http://www.ttbizonline.com/pro/20231109174440
http://www.ttbizonline.com/pro/20231109153128
http://www.ttbizonline.com/pro/20231109125350
http://www.ttbizonline.com/pro/20231109161553
http://www.ttbizonline.com/pro/20231110044437

#21 By 4240821 (109.94.216.41) at 11/12/2023 7:01:58 AM
https://www.mddir.com/company/luxbaby-manyvids-leaked/
https://www.mddir.com/company/cameron-canela-patreon-leaked/
https://www.mddir.com/company/brookie-xoxo-cookie-patreon-leaked/
https://www.mddir.com/company/blondiewet-onlyfans-leak/
https://www.mddir.com/company/astrid-star-clips4sale-leaked/
https://www.mddir.com/company/evalynn-manyvids-leaked/
https://www.mddir.com/company/southernproduction-onlyfans-leak/
https://www.mddir.com/company/fuxxxmeright-fansly-leaked/
https://www.mddir.com/company/rainydaze-patreon-leaked/
https://www.mddir.com/company/kimeon-patreon-leaked/

#22 By 4240821 (194.190.178.141) at 11/12/2023 7:51:35 PM
https://instem.res.in/comment/reply/2506/720487
https://instem.res.in/comment/reply/2557/720269
https://instem.res.in/comment/reply/2557/720249
https://instem.res.in/comment/reply/4222/720535
https://instem.res.in/comment/reply/2557/720327
https://instem.res.in/comment/reply/2557/720303
https://instem.res.in/comment/reply/2557/720351
https://instem.res.in/comment/reply/3790/720534
https://instem.res.in/comment/reply/2557/720372
https://instem.res.in/comment/reply/2557/720286

#23 By 4240821 (45.146.26.215) at 11/13/2023 5:16:44 PM
https://sexonly.top/get/b501/b501qgjsasunysvmrpu.php
https://sexonly.top/get/b975/b975nlgylvkjqmsinop.php
https://telegra.ph/Feetpics55-Skirt-Boosty-Leaked-12-23
https://telegra.ph/candy69ass-Party-ManyVids-Leaked-12-16
https://sexonly.top/get/b789/b789hhnpegerbfexcdq.php
https://sexonly.top/get/b253/b253egcfkljfkortcbs.php
https://sexonly.top/get/b1000/b1000dvvbmgdoiedcwlu.php
https://hotslutss.bdsmlr.com/post/659563802
https://zmut.com/pin/213124562202073462
https://sexonly.top/get/b767/b767nzjnvfftqvpaoml.php

#24 By 4240821 (62.76.153.10) at 11/14/2023 6:31:02 PM
https://sexonly.top/get/b183/b183dmbjnwoqhogkiff.php
https://sexonly.top/get/b622/b622iovzjyrywbagvjz.php
https://sexonly.top/get/b359/b359hwryyfuaejefxmv.php
https://sexonly.top/get/b704/b704tvxvlmdvvegvmyn.php
https://sexonly.top/get/b273/b273nyeeaxfbgdwgcsb.php
https://sexonly.top/get/b284/b284wgzubzsqgjgrqog.php
https://zmut.com/pin/213124562202031411
https://sexonly.top/get/b612/b612rvdxwwinifderhn.php
https://sexonly.top/get/b160/b160cdlbjnrmragtzej.php
https://sexonly.top/get/b862/b862qwohqctrnejsokz.php

#25 By 4240821 (194.226.185.83) at 11/15/2023 7:50:42 AM
https://sexonly.top/get/b52/b52qknvvevrjsqbckd.php
https://sexonly.top/get/b993/b993mpabfoqqpsouvwk.php
https://sexonly.top/get/b657/b657esgvsyphnxebfvl.php
https://sexonly.top/get/b843/b843kuroynzoimlmohf.php
https://sexonly.top/get/b670/b670bnnstmdbbetlxps.php
https://sexonly.top/get/b797/b797dbjygvslpqvdfpp.php
https://zmut.com/pin/213124562202037107
https://telegra.ph/IvanaKnoll-knolldoll-Creampie-Fansly-Leaked-11-29
https://sexonly.top/get/b534/b534zceykrdrdizhdyh.php
https://sexonly.top/get/b341/b341jrsklkajiyesskc.php

Write Comment
Return to News
  Displaying 1 through 25 of 305
Last | Next
  The time now is 3:48:22 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *