Information Security all in one place!

Symantec Reports: New Trojan headed for Win7: Backdoor.Conpee

Symantec has issued a warning about a Trojan horse program that is capable of infecting both 32- and 64-bit versions of Windows 7. The malware can allow attackers to elevate privileges of restricted processes without user knowledge or permission.

The latest fully patched versions of Windows 7 are vulnerable to a Backdoor.Conpee Trojan, warned Mircea Ciubotariu, a security response engineer at Symantec, on a company blog.

Ciubotariu also states in the article: “The new Trojan targets both 32-bit and 64-bit versions of Windows 7, adding to the growing weight of evidence that malware writers are redesigning their software to bypass security features in 64-bit Windows, said Ciubotariu.

Image representing Windows as depicted in Crun...

The 64-bit version of Windows 7 and Vista included Kernel Mode Code Signing and Kernel Patch Protection, that were intended to make them less vulnerable to malware.

But backdoor.Conpee and the recently-discovered Backdoor.Hackersdoor Trojan have both been shown to infect 64-bit operating systems, said Ciubotariu.

“What was just a theory not so long ago is now being used in-the-wild by [these] threats,” he warned.”

More on this topic can be found here: http://www.v3.co.uk/v3-uk/news/2159725/symantec-warns-bit-windows-trojans

Advertisements

2 responses

  1. I really enjoyed this thread, please keep posting info like this.

    March 18, 2012 at 8:45 AM

  2. I really enjoyed your blog! I put it in my favorites so I can come back again. I found it on Bing.

    March 26, 2012 at 5:39 PM

Let's hear what you have to say.

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s