As if TDSS wasn’t bad enough – Looks like TDSS is getting a nasty new overhaul in it’s deployment mechanism…spreading via LANS and USB sticks! It’s official name is Net-Worm.Win32.Rorpian. Rorpian sets up a DHCP server on the infected machine and listens for requests from workstations on the LAN. When a workstation receives an ip address [...]
You are here: Home
Part 2 of “My Night With A New Nasty Rootkit”
Let me just start by saying that I’m fried from last night. I was up until 1 am getting 2 clients fixed and ready for pickup, so I’m not sure if this story will translate out to how amazing I thought it was. Anyway… So, I get home yesterday around 7 pm and go right [...]
My Night With A New Nasty Rootkit
This is more of a “note to self/rant” kinda post but maybe this will help someone else out there. Yesterday a customer dropped off a PC infected with a Rogue System Utility. The Rogue said his hard drive was damaged and files were missing. He could fix his hard drive and restore the missing files [...]




