Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Researchers: Rootkits headed for BIOS
Robert Lemos, SecurityFocus 2006-01-26

ARLINGTON, Virginia -- Insider attacks and industrial espionage could become more stealthy by hiding malicious code in the core system functions available in a motherboard's flash memory, researchers said on Wednesday at the Black Hat Federal conference.

Comments Mode:
Researchers: Rootkits headed for BIOS 2006-01-27
Bela from VA (1 replies)
It wouldn't be that easy!!! 2006-01-27
janice
Quibble - rootkit for OS X 2006-01-27
Anonymous (1 replies)
Re: Quibble - rootkit for OS X 2006-01-30
Anonymous
Researchers: Rootkits headed for BIOS 2006-01-27
Gimping 8600
Not actually 2006-01-27
Prisoner (1 replies)
Re: Not actually 2006-06-24
Anonymous
Researchers: Rootkits headed for BIOS 2006-02-07
Samuel Stetler
Researchers: Rootkits headed for BIOS 2006-02-13
Black~Feather (1 replies)
Researchers: Rootkits headed for BIOS 2006-03-25
CONFIRMED ROOTKIT TROJAN / SCRIPTING IN BIOS (5 replies)
Re: Researchers: Rootkits headed for BIOS 2007-07-09
Burnt-out-User
I have spent the last 5 weeks trying all the same things you described. When I originally gave up and replaced the hard drives I thought it would be the end. Some how it now seems to start making its changes faster. Once I have reinstalled Windows XP Pro from the original disk, it only takes about 1 hour before I am logged off by remote admin, and when I restart I no longer have access at login. I have to reinstall the OS. This thing is so visious it installed a driver which allowed a network link to the server betwork through the bluetooth system on the machine. Every time I disable all wireless communications it will reapear in about 30 min. It has also suuccesfully jumped through the wireless router to my desktop unit. I can not take this any more and I can not take another call to anyone in India. Do I just buy another computer? what will prevent this from happening again? Could a code be stored or assigned to my DSL line? If any one has any kind of solution I will try anything. My laptop is a new $3800.00 Dell Inspiron 9400 and I just do not accept the Idea that it is trash. Is there a BIOS editor?

I am not a computer tech but I think the Malicious program is adding BIOS change commands and other chage commands at shutdown through something called a briefcase. At restart these commands are incorporated and it gets worse, I think it is actually adding files to the installation CD's. I now have very susspect files on my Dell and Windows install disks. I tried this myself as a test and was able to add a file to the Dell

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/11372/34722#34722
Researchers: Rootkits headed for BIOS 2008-04-25
Anonymous (1 replies)







 

Privacy Statement
Copyright 2009, SecurityFocus