| Home : February 28 2014 Computer News : Gameover malware tougher to kill with new rootkit component |
|
Gameover malware tougher to kill with new rootkit component |
February 28, 2014
A new variant of the Gameover malware that steals online banking credentials comes with a kernel-level rootkit that makes it significantly harder to remove, according to security researchers from Sophos.Gameover is a computer Trojan based on the infamous Zeus banking malware whose source code was leaked on the Internet in 2011. Gameover stands apart from other Zeus-based Trojan programs because it uses peer-to-peer technology for command and control instead of traditional servers, making it more resilient to takedown attempts.At the beginning of February, researchers from security firm Malcovery Security, reported that a new variant of Gameover was being distributed as an encrypted .enc file in order to bypass network-level defenses. However, the latest trick from the Gameover authors involves using a kernel rootkit called Necurs to protect the malware’s process from being terminated and its files from being deleted, researchers from Sophos said Thursday in a blog post.To read this article in full or to leave a comment, please click here
Link: http://www.pcworld.com/article/2103401/gameover-malware-tougher-to-kill-with-new-rootkit-component.html#tk.rss_all
|
|
|
|
|