ZeroAccess - new steps in evolution

From Botnets.fr
Jump to navigation Jump to search

(Publication) Google search: [1]

ZeroAccess - new steps in evolution
Zeroaccess-new-steps-in-evolution.png
Botnet ZeroAccess
Malware ZeroAccess (bot)
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2012 / June 22, 2012
Editor/Conference Artem Baranov
Link http://artemonsecurity.blogspot.fr/2012/06/zeroaccess-new-steps-in-evolution.html artemonsecurity.blogspot.fr (artemonsecurity.blogspot.fr Archive copy)
Author Artem I. Baranov
Type

Abstract

Already since a month ago ZeroAccess was updated. As we remember in previous versions it contained rootkit with VFS functionality and also modern self-defence method from AV-scanners. Also it infected drivers by hijacking it file from disk.

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2012BFR1053,
   editor = {Artem Baranov},
   author = {Artem I. Baranov},
   title = {ZeroAccess - new steps in evolution},
   date = {22},
   month = Jun,
   year = {2012},
   howpublished = {\url{http://artemonsecurity.blogspot.fr/2012/06/zeroaccess-new-steps-in-evolution.html artemonsecurity.blogspot.fr}},
 }