2012-05-03
Abstract
Win32/Sirefef (a.k.a. ZeroAccess) is one of the most prevalent threats in the wild today. Its main component is a kernel-mode driver, which implements a kernel-mode P2P file distribution system to deploy new malware components and upgrade existing ones. Chun Feng describes the design and implementation of this P2P file distribution system.
Copyright © 2012 Virus Bulletin
The full article is available to registered users. Click here for free registration or, if you already are a registered user, login to access the full article.
![]() |
Magazine | ![]() |
![]() |
Quick Links | ![]() |
![]() |
Poll | ![]() |
| ||||||
![]() |
VB2013 | ![]() |
| ||||||
Virus Bulletin currently has 227,267 registered users.






