Root Kits
Results 1 to 8 of 8

Thread: Root Kits

  1. #1
    Registered User
    Join Date
    Jan 1999
    Location
    Canada
    Posts
    2,513

    Question Root Kits

    Can we start a sticky thread here where infromation about root kits can be pooled?

    So far it seems the only two remedies (in order of preference) are prevention and bare metal recovery.

    More later.

  2. #2
    Registered User TechZ's Avatar
    Join Date
    Apr 2003
    Location
    Bahrain, Middle East
    Posts
    7,525
    http://en.wikipedia.org/wiki/Rootkit

    as always the wiki knows a good amount

    I've never dealt with this problem, so I'd like to learn abit more.

  3. #3
    Registered User Snowbound67's Avatar
    Join Date
    May 2001
    Location
    Lost in Space
    Posts
    50
    Hey hey,

    Here is more info and a utility to "hopefully" detect if a RootKit is present on a system;

    RootKit Info and RootKit Revealer

    I've had 2 PC's that had Rootkits on them in the past week and they are not fun to try to fix. I agree, best thing is probably to back up critical data and reinstall the OS... trying to get rid of it is VERY time consuming.


    Snow

  4. #4
    Registered User
    Join Date
    Jan 1999
    Location
    Canada
    Posts
    2,513
    Some the recent ones stop Systernal's Rootkit Revealer and Frisk's Blacklight from running.

  5. #5
    Geezer confus-ed's Avatar
    Join Date
    Jul 1999
    Location
    In front of my PC....
    Posts
    13,087
    Quote Originally Posted by TechZ
    I've never dealt with this problem, so I'd like to learn abit more.
    You probably have & just 'given up' & flattened the machine in question

    A rootkit type infection is really a glorified virus designed to tie itself in with a particular operating systems workings.

    Its very hard to know when you are infected this way, as scans from inside windows are compromised once infected, best advice is periodic scans from some other bootable source.

  6. #6
    Registered User TechZ's Avatar
    Join Date
    Apr 2003
    Location
    Bahrain, Middle East
    Posts
    7,525
    Quote Originally Posted by confus-ed
    You probably have & just 'given up' & flattened the machine in question

    A rootkit type infection is really a glorified virus designed to tie itself in with a particular operating systems workings.

    Its very hard to know when you are infected this way, as scans from inside windows are compromised once infected, best advice is periodic scans from some other bootable source.
    from what I read on the wikipedia link, and what you said, I've never come across it

  7. #7
    Registered User Snowbound67's Avatar
    Join Date
    May 2001
    Location
    Lost in Space
    Posts
    50
    Hey all,

    Looks like M$ is taking an interest in rootkits, and they seem to have some technology coming to try to detect them. Their research website is here;


    Strider GhostBuster Rootkit Detection


    Snow

  8. #8
    Registered User DaveW's Avatar
    Join Date
    Feb 2005
    Posts
    6
    Quote Originally Posted by Snowbound67
    Hey all,

    Looks like M$ is taking an interest in rootkits, and they seem to have some technology coming to try to detect them. Their research website is here;


    Strider GhostBuster Rootkit Detection


    Snow
    I am actually suprised they waited so long

Similar Threads

  1. DNS Woes
    By gazzak in forum Tech-To-Tech
    Replies: 14
    Last Post: November 10th, 2005, 04:12 AM
  2. Restrictions?
    By jfreeman in forum Novell
    Replies: 6
    Last Post: November 30th, 2004, 02:00 PM
  3. Windows stops after logon
    By RejectionMan in forum Novell
    Replies: 11
    Last Post: November 10th, 2004, 03:45 PM
  4. USB Root Hub problem
    By parsifal in forum USB/Firewire
    Replies: 3
    Last Post: May 16th, 2004, 03:03 PM
  5. [RESOLVED] PB 930 MB USB Root Hub Problems
    By Carrolles in forum USB/Firewire
    Replies: 3
    Last Post: March 10th, 2001, 07:24 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •