Forum Home
Press F1
 
Thread ID: 70825 2006-07-17 14:54:00 Stealth Code From Hell Runs On Vista. SurferJoe46 (51) Press F1
Post ID Timestamp Content User
471585 2006-07-17 14:54:00 Security researchers have discovered a new type of rootkit they believe will greatly increase the difficulty of detecting and removing malicious code.

The rootkit in question, called Backdoor.Rustock.A by Symantec and Mailbot.AZ by F-Secure, uses advanced techniques to avoid detection by most rootkit detectors.

The rootkit is "unique given the techniques it uses," Symantec's Elia Florio wrote in a recent analysis. "It can be considered the first-born of the next generation of rootkits."

Rustock.A uses a mixture of old techniques and new ideas to make it "totally invisible on a compromised computer when installed," including a beta version of Windows Vista, Florio wrote.

www.techworld.com
SurferJoe46 (51)
471586 2006-07-17 21:48:00 The only rootkit revealer that does work that I know of with this stealth code is F-Secure's Blacklight Beta. I hope someone finds a cure for it soon as it's going to create havoc in the wild. :( intel hunter (6666)
471587 2006-07-18 09:57:00 Seems that where-ever there is a Window(s) there's alway's a bug to mess it up phar (7365)
1