Blog: Trojan.Mebratix.B – the Ghost in M.B.R.

Trojan.Mebratix infects the Master Boot Record (M.B.R.) of a compromised computer. It is very harmful, advanced, and rare in the threat landscape. First appearing in March 2010, this version, also known as “Ghost Shadow” in China, copies the original MBR to the next sector and then replaces the original MBR with malicious code. As a result, Trojan.Mebratix will be loaded and then executed before the operating system, and it can’t be removed thoroughly by a normal re-boot.

 

 

You can read the rest of this Blog here: Trojan.Mebratix.B – the Ghost in M.B.R..