Myrtus and Guava, Episode 1
A few days ago, colleagues from the Belarussian antivirus company VirusBlokAda (VBA) announced they’d come across an interesting new malicious program. They published a short analysis of the program which highlighted two innovations:
1. Using lnk files to launch files from USB storage devices, a method which hasn’t been used before.
2.The malicious driver has a valid digital signature from Realtek.
The VBA article is well worth taking a look at – great research, guys!
Over here at Kaspersky, we’ve also taken a look at the malware, and we’ve also come up with a few interesting things.
Tags: anti-virus, Industry News, Industry News, Information Technology, Internet Security, Kaspersky, security, Software, virus
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.