Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.

Windows 7: Has the MBR rootkit disappeared? Not really.

10 Mar 2010   #1

Win 7 Ultimate 64-bit. SP1.
Has the MBR rootkit disappeared? Not really.

During these days we have talked a lot about the TDL3 rootkit infection, a nice example of how malware writers can make security vendors's work harder. We will continue writing about TDL3 to update our readers about the status of both the rootkit and defensive techniques.

However today we want to take a step back and talk about an old friend called the MBR rootkit, or Mebroot, or yet Torpig. The fact that we haven't talked about it for a while doesn't mean it has been defeated. Instead, the MBR rootkit is still actively spreading throughout the web, mostly through compromised websites.

During the last two days we have cleaned hundreds of infected machines, a quite impressive number that shows how the threat is still hitting hard.

As said before, compromised websites are the primary vehicle of infection. Injected iframes and obfuscated javascripts have become a serious threat during the last years, showing how often websites are not protected.
Source -
Has the MBR rootkit disappeared? Not really

My System SpecsSystem Spec

10 Mar 2010   #2
Microsoft MVP

Windows 7 Ultimate 32bit SP1

Unfortunately, it's quite prevalent.
My System SpecsSystem Spec

 Has the MBR rootkit disappeared? Not really.

Thread Tools

Similar help and support threads for2: Has the MBR rootkit disappeared? Not really.
Thread Forum
ZA Reg Rootkit??? System Security
Require (Rootkit.TDSS.TDL4) Rootkit Removal & Cleanup walkthrough System Security
Rootkit Banker - now also to 64-bit Security News
BSOD DUE TOO rootkit System Security
Potential Rootkit System Security
Need help with Rootkit problem? Performance & Maintenance
rootkit System Security

Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 03:53 AM.
Twitter Facebook Google+

Windows 7 Forums

Seven Forums Android App Seven Forums IOS App

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33