Rootkits allow hackers to hide content on infected computers
Rootkits allow hackers to hide content on infected computers
R E L A T E D   C O N T E N T
ADVERTISEMENT

Rootkits leave antivirus systems powerless

No defence in standard antivirus code

Iain Thomson, vnunet.com 18 Mar 2005
ADVERTISEMENT

An increasing number of virus writers are using so-called 'rootkit' technology to create malware that is invisible to existing antivirus packages, IT security experts warned today.

Rootkits have been around in Unix systems for about 15 years, but the technology has only been in Windows systems recently, according to security firm F-Secure.

They allow hackers to hide spam servers, stolen media and illegal content on infected computers, and provide a backdoor that gives full administrator privileges to those who know how to access it.

"Windows rootkit is a stealth technique for hiding files. But does it at the kernel level, rather than at the application level," explained Patrick Runald, senior technical consultant at F-Secure.

"As such, virtually none of the current antivirus products can detect a rootkit at work. You can bet they all will, but that will take about six months and the rootkits are being used now."

Two recent viruses, Myfip.H and Maslan.A, both had stealth features borrowed from rootkits, according to Runald.

Dr Emlyn Everitt, a consultant at Logicalis and the first person in Britain to gain a PhD in intrusion prevention, added: "The key to any hacking attack is privilege escalation.

"Most security conscious people will have limited PC privileges. These rootkits allow you to escalate the privileges and get full control, and they can be easily customised to get past antivirus security."

SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
Guildford, Surrey, United Kingdom | Enstar
 IT Development Manager/IT Development Project manager - Guildford - £40k - £60k plus benefits   Enstar (EU) Limited (formerly Castlewood (EU) Limited) is seeking an IT Development Project Manager and an IT Development Manager to ... more >
London, United Kingdom | Royal Borough of Kensington and Chelsea
Web Content Manager - c.£40,000 plus bonus - London   As one of the country's best-performing councils, we're always looking for new ways to improve on excellence. Providing an innovative, high-quality internet site for our ... more >
London, United Kingdom | British Museum
Senior Programmer - The British Museum - £40k+ - London   Although steeped in history, the British Museum is constantly striving to improve access to and understanding of one of the world's most diverse collections of antiquities from cultures ... more >
London, United Kingdom | Feltham City Learning Centre
ICT Systems Administrator - Feltham City Learning Centre - £23,097 - £24,528 A full time ICT Systems Administrator to work in the Feltham City Learning Centre. This role requires a broad range of ICT skills ... more >
More job opportunities