PR Urgent - Press Release News Wire
 
Wed, 22 May 2013 07:00:29 -0500
Home
Recent News
PR Categories
PR Writing Tips
PR Dont's
Sample Releases
Submit Press Release
Archives
Contact us
Hire a PR Writer
Register FREE
Login
Advertise



Arts
Business
Computers
Education
Entertainment
Events
Finance
Internet
Medicine
Real Estate
Society
Sports
Technology
Travel

Submit a Press Release FREE !


Register FREE !





Kaspersky Lab implements detection and treatment for unique MBR rootkit

Release Date: 2009-05-09
Category: Computers
 
Add to GoogleMy Yahoo News
 

Kaspersky Lab delivers the world’s most immediate protection against IT security threats, including viruses, spyware, crimeware, hackers, phishing, and spam

FOR IMMEDIATE RELEASE / PRURGENT

Kaspersky Lab implements detection and treatment for unique MBR rootkit
Kaspersky Lab, a leading developer of secure content management solutions, has implemented detection and treatment for a new variant of a unique MBR rootkit.
The new variant of Sinowal, a malicious program that is capable of hiding its presence in the system by infecting the Master Boot Record (MBR) on the hard drive, was detected by the company’s experts at the end of March 2009.

Throughout 2008, Kaspersky Lab’s analysts provided detailed reports about other variants of this rootkit: in the first quarterly report on malware evolution (http://www.viruslist.com/en/analysis?pubid=204792002) and in the article “Bootkit: the challenge of 2008” (http://www.viruslist.com/en/analysis?pubid=204792044). However, the new variant has come as a surprise for researchers. Unlike earlier versions, the new modification, Backdoor.Win32.Sinowal, penetrates much deeper into the system to avoid being detected. The stealth method used in this variant hooks device objects at the operating system’s lowest level. This is the first time cybercriminals have used such sophisticated technologies. This explains why no antivirus products could treat computers infected with the new Sinowal modification or even detect it when it first appeared. Once the bootkit penetrates the system, it conceals the payload’s activities, which are designed to steal user data and various account details.

According to Kaspersky Lab’s experts, over the last month the bootkit has been actively spreading from a number of malicious sites that exploit Neosploit vulnerabilities. In particular, it can penetrate a system via a vulnerability in Adobe Acrobat Reader that allows a malicious PDF file to be downloaded without the user’s knowledge.

Implementing detection and treatment for the bootkit, which is still spreading throughout the Internet, is the most difficult task that antivirus specialists have faced for a number of years. Kaspersky Lab was one of the first major antivirus vendors to incorporate both detection and successful treatment for the new Sinowal modification in its personal antivirus solutions.
To check whether the bootkit has infected a computer, users must update their antivirus databases and perform a complete system scan. If the bootkit is detected, the computer will need to be rebooted during the treatment process.
Kaspersky Lab specialists also recommend users to install all the necessary patches to close vulnerabilities in Acrobat Reader (http://www.adobe.com/support/security/bulletins/apsb09-04.html) and any browsers that they use.

About Kaspersky Lab

Kaspersky Lab delivers the world’s most immediate protection against IT security threats, including viruses, spyware, crimeware, hackers, phishing, and spam. Kaspersky Lab products provide superior detection rates and the industry’s fastest outbreak response time for home users, SMBs, large enterprises and the mobile computing environment. Kaspersky® technology is used worldwide inside the products and services of the industry’s leading IT security solution providers. Learn more at www.kaspersky.com. For the latest on antivirus, anti-spyware, anti-spam and other IT security issues and trends, visit www.viruslist.com

PR Contact:
ICPAR
A Division of Planman Marcom Pvt. Ltd.

Pankti Ashar
Creative Head - Client Servicing & research
+91 9920906074
Poonam More
Consultant – Business development & client Servicing
+91 9324328522

 
Contact Info
ICPAR
IIPM Towers

Phone: 022-30668149

Website: http://www.kasperskyasia.com