Back to News Archive

Mebroot Has Returned

April 21, 2011  Malware News

Thousands of servers offer Mebroot rootkit to their unsuspecting visitors. Rootkit is a set of programs and technologies allowing masked malware, such as viruses, trojans and spyware on a computer. The latest version of Mebroot first appeared at the end of 2007 and is very difficult to reveal when using standard security applications. Even the older version which registered to sector MBR (master boot record) literally became invisible for both system and security applications. When a security program attempts to check MBR, the rootkit´s newest version reports that the sector has not been manipulated and it remains hidden.

Back to News Archive