dparm
02-23-2005, 10:01 AM
http://www.computerworld.com/securitytopics/security/story/0,10801,99843,00.html
Synopsis: Microsoft is warning users about the next-generation of system monitoring programs called rootkits. They are nearly impossible to detect and can really only be cleaned by a full wipe of the HDD. Rootkits differ in that they modify the OS kernel to do whatever they want, and the authors are remarkably good at hiding them. They can write it to stop any anti-spyware or anti-virus tool from running.
I suggest reading this article, it scared me for sure.
Here's a Microsoft whitepaper on what they're doing about it.
http://research.microsoft.com/research/pubs/view.aspx?type=Technical%20Report&id=775
Synopsis: Microsoft is warning users about the next-generation of system monitoring programs called rootkits. They are nearly impossible to detect and can really only be cleaned by a full wipe of the HDD. Rootkits differ in that they modify the OS kernel to do whatever they want, and the authors are remarkably good at hiding them. They can write it to stop any anti-spyware or anti-virus tool from running.
I suggest reading this article, it scared me for sure.
Here's a Microsoft whitepaper on what they're doing about it.
http://research.microsoft.com/research/pubs/view.aspx?type=Technical%20Report&id=775