What are "Rootkit" based viruses ?

  • Thread starter Thread starter Mark Tregenza
  • Start date Start date
M

Mark Tregenza

Apparently we're all going to have to battle "rootkit" based viruses in the
near future.

Could someone please tell me what a "rootkit" based virus is and, if I get
one, how I can remove it?

Thanks everyone,

Mark.
 
Apparently we're all going to have to battle "rootkit" based viruses in the
near future.

Could someone please tell me what a "rootkit" based virus is and, if I get
one, how I can remove it?

F-Secure has a short "primer on their web site: See
<http://www.f-secure.com/blacklight/rootkit.shtml> for a start then
checkout:

<http://www.computerworld.com/printthis/2005/0,4814,99843,00.html>
<http://www.eweek.com/article2/0,1759,1766413,00.asp?kc=EWRSS03129TX1K0000614>
Thanks everyone,

Your welcome. HTH.


Cheers-

Jeff Setaro
jasetaro@SPAM_ME_NOT_mags.net
http://people.mags.net/jasetaro/
PGP Key IDs DH/DSS: 0x5D41429D RSA: 0x599D2A99 New RSA: 0xA19EBD34
 
Jeffrey said:
On Tue, 12 Apr 2005 21:37:40 +0000 (UTC), "Mark Tregenza"


F-Secure has a short "primer on their web site: See
<http://www.f-secure.com/blacklight/rootkit.shtml> for a start then

yes, if you don't mind their nonsensical 'rootkits in windows are like
rootkits in unix except without the root granting capability'...

long story short, microsoft should never have taken away our ability to
boot from a known clean removable disk and now we're going to pay for
that mistake and microsoft will blame the malware authors and new
anti-malware software opportunities will open up...
 
On that special day, kurt wismer, ([email protected]) said...
long story short, microsoft should never have taken away our ability to
boot from a known clean removable disk

If they provided a program similar to Barts PE and would shove it onto
the desktop at each reboot until it is done by the user, similar to
their advertising "Starting Windows Tour" for beginners, everything
would be fine.

Of course, an XP startup won't fit onto a 1,44" floppy.


Gabriele "has finally made said PE" Neukam

(e-mail address removed)
 
Back
Top