Warning on stealthy Windows virus

UKJett

Full Member
Quote from BBC site:

"Security experts are warning about a stealthy Windows virus that steals login details for online bank accounts.In the last month, the malicious program has racked up about 5,000 victims - most of whom are in Europe.

Many are falling victim via booby-trapped websites that use vulnerabilities in Microsoft's browser to install the attack code.

Experts say the virus is dangerous because it buries itself deep inside Windows to avoid detection. "

Link: http://news.bbc.co.uk/1/hi/technology/7183008.stm

Quite worrying... They mention another website with a specific rootkit checker.

Quote: "Independent security firm GMER has produced a utility that will scan and remove the stealthy program."

Anyone tried this programme yet? I would imagine that if you have a fully updated system (Windows Updates, Virus Checker, Adware etc) you should be fine.

Link: http://www.gmer.net/index.php

Nothing more scary than the ideal that someone could steal you log in information and take all your cash from your bank account.
 

Aciiid

Full Member
Well they obveously know what they are talking about:

Mebroot cannot be removed while a computer is running.

Oh I'll swith my machine off to remove it.... anyone got a binary typewriter?

Apart from that I'd hang off running any root kit checking link... offical anti-virus stuff will catch it if it is legit in a week or two.
 

Chick

Cartwheel RIGHT
Oh I'll swith my machine off to remove it.... anyone got a binary typewriter?

Apart from that I'd hang off running any root kit checking link... offical anti-virus stuff will catch it if it is legit in a week or two.

It means you need to reboot to clean it as you can't modify the MBR directly with windows running, without being a 3vil virus.
 
Top