Currently there is a lot to do in our country about the citadel virus. According to news sources, some 150.000 PC have been effected and have been part of a botnet. PC's including those of government, industry and public sector and some privately owned.
What worries me a lot, and frankly I don't understand, is that this virus stayed undetected for months while that many PC with undoubtedly many different AV packages were (being) infected. It is known that the attacker got hold of some 750 Gigabytes of data.
As I understand it, this one is using a 'man in the browser' type of attack. Webroot has many, much appreciated, controls to manage exe type of files and/or named processes. I see none, however, for controlling browser hooks. How well does WR protect against these kind of attacks? Anybody know whether WR indeed detected a citadel or man in the browser based virus?
Protection against 'man in the browser' type of attack?
Login to the community
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
