Anti-Virus White Papers
Hide'n Seek Revisited - Full Stealth Is Back
Overview Rootkits are designed to hide information. They are no longer utilized only by highly skilled individuals targeting UNIX machines. Advanced Windows rootkits have emerged and are gaining popularity among intruders. The alarming news is that malware writers are adopting rootkit techniques, which allows them to create a new breed of worms, Trojans and spyware that are able to avoid detection by hiding their presence on the system. Traditional anti-virus and intrusion detection systems are powerless against this emerging threat, since they rely on the validity of the information provided by the operating system. This information cannot be trusted if the kernel or the application programming interfaces are modified by malware. This paper provides an introduction to the hiding techniques utilized by advanced Windows rootkits.
| Publisher | F-Secure | File Format | |
|---|---|---|---|
| Date Published | October 2005 | Downloads | 5 |
| Format | White Papers | ||
| Topics | |||



