In Through The Out Door

Diving Through The Information Barrage

Windows Rootkit Wars Escalate

Windows Rootkit Wars Escalate:

An anonymous reader writes “The rootkit wars have started to escalate with a rootkit named Rustock which is able to remain hidden from all the popular anti-rootkit tools. It uses some new techniques including not only putting itself in a ADS (NTFS alternate data stream) which isn’t seen by normal file system enumeration tools, but even blocks ADS aware tools from seeing the stream. Works in Vista, too! Analysis in both Symantec and F-Secure blogs.”

No comments yet. Be the first.

Leave a reply

You must be logged in to post a comment.

Bad Behavior has blocked 1250 access attempts in the last 7 days.