Tuesday, July 14, 2020
  • Home
  •             

Bot trying to hide under Sony DRM

November 10th, 2005 by Patrick S

We wouldn’t like to say “we told you so” but unfortunately this is one of those times you just have to do it.

We have just analyzed the first malware (Breplibot.b) that is trying to hide on machines that have Sony DRM software installed.

Luckily, the bot has a design flaw. If the Sony DRM rootkit is active (hiding) in the system during infection, the bot will not run at all. Moreover, the bot cannot survive a reboot because of a programming error. In any case, this is a very good example of why software should not use rootkit hiding techniques.

Source:F-SECURE

Posted in Security | 1 Comment »


This entry was posted on Thursday, November 10th, 2005 at 4:40 pm and is filed under Security. You can follow any responses to this entry through the RSS 2.0 feed. Both comments and pings are currently closed.


Comments are closed.