Rootkit.MBR.Sst.A (Boot image) (BitDefender))
Infection with TDSS is extremely difficult to spot because of the rootkit component that hides the actual payload. Usually, search engine search results are redirected to third-party sites that display ads or sell fake products. Also, access to the websites registered by AV vendors and computer support forums is blocked
Run the attached removal tool and let it disinfect the system. The system may reboot after the scan completes.
Mihail ANDRONIC, Virus Researcher
The rootkit component is installed by the dropper malware. It hooks specific functions of the operating system, and uses intermediary files to prevents Windows from checking digital signatures for drivers. It also acts as a handler for HDD read/write requests. The rootkit component is used with the sole purpose of hiding other maluicious payloads that are part of the respective campaign.