CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer

News-Roots
Goto page Previous  1, 2
 
Post new topic   Reply to topic       All -> FavForums -> Rootkit Revelations [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
Ikeb

Special Response Team
Forums Admin

Joined: Apr 20, 2003
Posts: 16536

Forums Admin Moderators MVP Premium SRT Team CC Committee Team F@H

PostPosted: Tue Sep 26, 2006 12:56 am    Post subject:
Reply with quote

As I understand it, there's no specific word count limitiation to fair use provisions...

Back to top
View users profile Send private message
Cudni

Special Response Team


Joined: Dec 10, 2002
Posts: 3710
Location: Et In Arcadia ego
MIRT MVP SRT

PostPosted: Fri Nov 03, 2006 12:26 pm    Post subject: The strange case of Dr.Rootkit and Mr.Adware
Reply with quote

from
http://www.antirootkit.com/articles/gromozo/The-strange-case-of-Dr-Rootkit-and-Mr-Adware.htm
"...
Marco Giuliani

INTRODUCTION
In the last few years, we've seen a dramatic change of infection techniques. Years ago, malicious programs started as simple file infectors, then progressed through macro viruses, worms, script viruses, and now we are plagued in massive numbers by backdoors, trojans, adware, and rootkits.

The skill set needed for writing malware has changed, and so have the goals. The days when virus writers wrote viruses to show off how good they are at making malicious programs have gone away, and now all that the virus writers care about is making money by infecting a lot of computers.
..."

Cudni


_________________
Hecho en Mexico
Back to top
View users profile Send private message Visit posters website
Dragan_Glas

Team CC Chief Host
Team CC Chief Host
Chess Board Host
Chess Board Host

Joined: May 27, 2004
Posts: 2938

Premium RootKit Detection Hosts Rootkit Responders SRT Team CC Committee

PostPosted: Mon Nov 20, 2006 3:55 pm    Post subject:
Reply with quote

Greetings,

PCI cards the next haven for rootkits?

Quote:
Security researcher John Heasman released a paper this week describing a way to hide malicious code on graphics and network cards in such a way as to avoid detection and survive a full re-installation of the operating system.


Kindest regards,

Dragan Glas


_________________
Quote:
The only secure computer is one that's unplugged, locked in a safe, and buried 20 feet under the ground in a secret location... and I'm not even too sure about that one
Dennis Hughes, FBI
Back to top
View users profile Send private message
Cudni

Special Response Team


Joined: Dec 10, 2002
Posts: 3710
Location: Et In Arcadia ego
MIRT MVP SRT

PostPosted: Thu Dec 07, 2006 7:02 pm    Post subject:
Reply with quote

from
http://www.gmer.net/news.php
"...
I developed sample rootkit "test.sys" which hides its file from all public rootkit detectors:
..."

Cudni


_________________
Hecho en Mexico
Back to top
View users profile Send private message Visit posters website
Marianna

Security Expert
Premium Member

Joined: Nov 05, 2003
Posts: 11730

MVP Premium Rootkit Experts Security Experts

PostPosted: Mon Jan 08, 2007 11:51 pm    Post subject: Panda Anti-Rootkit 1.05.00 beta
Reply with quote

http://research.pandasoftware.com/bl...t-cleaner.aspx

image


Download

http://research.pandasoftware.com/bl...ntiRootkit.rar

Help

http://www.pandasoftware.com/downloa...c/en/whnjs.htm


_________________
"Wisdom is not a product of schooling but of the life-long attempt to acquire it."
- Albert Einstein (1879-1955)


Microsoft MVP - Consumer Security 2006 - 2008
Back to top
View users profile Send private message
negster22

Security Expert
Premium Member

Joined: Mar 10, 2004
Posts: 5394

Moderators MVP Premium RootKit Detection Hosts Rootkit Experts Security Experts SRT

PostPosted: Tue Jan 09, 2007 1:28 am    Post subject:
Reply with quote

Thanks, Marianna - will try it! Links are not working, can you please correct.


_________________
Negster22 - MS MVP - Consumer Security 2006-2008 image
Back to top
View users profile Send private message Visit posters website
Marianna

Security Expert
Premium Member

Joined: Nov 05, 2003
Posts: 11730

MVP Premium Rootkit Experts Security Experts

PostPosted: Tue Jan 09, 2007 3:05 am    Post subject:
Reply with quote

Nancy,

here is the webpage:

http://www.antirootkit.com/software/Panda-Anti-Rootkit-Tucan.htm

Download from PandaSoftware Site


_________________
"Wisdom is not a product of schooling but of the life-long attempt to acquire it."
- Albert Einstein (1879-1955)


Microsoft MVP - Consumer Security 2006 - 2008
Back to top
View users profile Send private message
Prince_Serendip

Site Moderator


Joined: Sep 07, 2002
Posts: 17542

1st Responders MIRT Moderators MVP Premium RootKit Detection Hosts Rootkit Experts Rootkit Responders

PostPosted: Sat Feb 24, 2007 9:00 am    Post subject:
Reply with quote

Kernel Malware and Rootkits multiplying more rapidly than user-mode versions.

CastleCops Link/postitle180551-0-0-.html


_________________
image
Microsoft MVP Consumer Security 2006, 2007 & 2008
Back to top
View users profile Send private message
wawadave

Special Response Team
Special Response Team

Joined: Nov 22, 2002
Posts: 21503
Location: Installing Vista http://tinyurl.com/2l9qyd
Premium RootKit Detection Hosts Rootkit Responders SRT

PostPosted: Mon Mar 12, 2007 4:40 pm    Post subject:
Reply with quote

ROOTKITS EVADE HARDWARE DETECTION
At Black Hat, researcher shows how advanced rootkits can hide in
system RAM.
http://www.infoworld.com/article/07/03/05/HNrootkitevade_1.html


_________________
Brycetechs new tut dvd http://tinyurl.com/2u7rpk
The Pixel Palladium
Bryce Newby help and tuts, d/l,s How 2s Updated 18 Apr 2008
Back to top
View users profile Send private message Send email Visit posters website
Dragan_Glas

Team CC Chief Host
Team CC Chief Host
Chess Board Host
Chess Board Host

Joined: May 27, 2004
Posts: 2938

Premium RootKit Detection Hosts Rootkit Responders SRT Team CC Committee

PostPosted: Fri Mar 16, 2007 4:44 pm    Post subject: Can a Rootkit Be Certified for Vista?
Reply with quote

Greetings,

Can a Rootkit Be Certified for Vista?

Quote:
A roomful of hackers, CIOs and CSOs agree that Microsoft's given us the most secure version of Windows yet, but their approval is served up with a garnish of "excepts," "howevers" and "althoughs."


Kindest regards,

Dragan Glas


_________________
Quote:
The only secure computer is one that's unplugged, locked in a safe, and buried 20 feet under the ground in a secret location... and I'm not even too sure about that one
Dennis Hughes, FBI
Back to top
View users profile Send private message
negster22

Security Expert
Premium Member

Joined: Mar 10, 2004
Posts: 5394

Moderators MVP Premium RootKit Detection Hosts Rootkit Experts Security Experts SRT

PostPosted: Fri Mar 23, 2007 10:42 pm    Post subject:
Reply with quote

The Impact of Malicious Code on Windows Vista

by Orlando Padilla of Symantec Advanced Threat Research

This is an extremely interesting article that reveal how Vista reacts (or in some cases the correct term might be repels), different classes of Windows threats including Rootkits, Keyloggers, trojans and backdoors.

Interestingly enough, of the small percentage of rootkits that were able to successfully complete execution, NONE were persistent (able to survive a reboot).

Quote:
Of 17 rootkits tested, none were successful at surviving a reboot, and only 3 executed successfully. Although a number of user-mode rootkits could potentially leverage local hooking methods to monitor interactive users (as explained previously), none succeeded under Windows Vista due to UAC restrictions. Kernel-mode rootkits fail immediately due to their inability to install drivers or use alternate methods, such as Direct Kernel Object Manipulation (DKOM) for kernel infection.


_________________
Negster22 - MS MVP - Consumer Security 2006-2008 image
Back to top
View users profile Send private message Visit posters website
wawadave

Special Response Team
Special Response Team

Joined: Nov 22, 2002
Posts: 21503
Location: Installing Vista http://tinyurl.com/2l9qyd
Premium RootKit Detection Hosts Rootkit Responders SRT

PostPosted: Sun Apr 22, 2007 4:24 pm    Post subject:
Reply with quote

Rootkits for Dummies gets
206,000 google hits
http://www.google.com/search?hl=en&q=rootkits+for+dummies&aq=t&oq=rootkits


_________________
Brycetechs new tut dvd http://tinyurl.com/2u7rpk
The Pixel Palladium
Bryce Newby help and tuts, d/l,s How 2s Updated 18 Apr 2008
Back to top
View users profile Send private message Send email Visit posters website
wawadave

Special Response Team
Special Response Team

Joined: Nov 22, 2002
Posts: 21503
Location: Installing Vista http://tinyurl.com/2l9qyd
Premium RootKit Detection Hosts Rootkit Responders SRT

PostPosted: Sun Apr 22, 2007 4:27 pm    Post subject:
Reply with quote

Vista DRM = rootkit?
Posted by Joris Evers

A security researcher has released a program that shows how digital rights management processes in Windows Vista could be used to hide malicious software, rootkit-like behavior.
http://news.com.com/8301-10784_3-6176051-7.html


_________________
Brycetechs new tut dvd http://tinyurl.com/2u7rpk
The Pixel Palladium
Bryce Newby help and tuts, d/l,s How 2s Updated 18 Apr 2008
Back to top
View users profile Send private message Send email Visit posters website
wawadave

Special Response Team
Special Response Team

Joined: Nov 22, 2002
Posts: 21503
Location: Installing Vista http://tinyurl.com/2l9qyd
Premium RootKit Detection Hosts Rootkit Responders SRT

PostPosted: Sun Apr 22, 2007 4:51 pm    Post subject:
Reply with quote

Can you say: Light slap on the wrist??

sony BMG Settles FTC Charges

CDs’ Embedded Content Protection Software Posed Security Risks, Limited CD Use, and Monitored Users’ Listening Habits on their Computers, Without Consumer Consent
http://www.ftc.gov/opa/2007/01/sony.shtm

i like this guys take on it
http://www.ftc.gov/opa/2007/01/sony.shtm


_________________
Brycetechs new tut dvd http://tinyurl.com/2u7rpk
The Pixel Palladium
Bryce Newby help and tuts, d/l,s How 2s Updated 18 Apr 2008
Back to top
View users profile Send private message Send email Visit posters website
wawadave

Special Response Team
Special Response Team

Joined: Nov 22, 2002
Posts: 21503
Location: Installing Vista http://tinyurl.com/2l9qyd
Premium RootKit Detection Hosts Rootkit Responders SRT

PostPosted: Mon May 07, 2007 6:31 pm    Post subject:
Reply with quote

ARE ROOTKITS THE NEXT BIG THREAT TO ENTERPRISES?
Late at night, a system administrator performed a routine check of a
crashed server, one of 48 systems comprising a major online
infrastructure that generated about US$4 million per month in
revenue.
http://www2.csoonline.com/blog_view.html?CID=32882


_________________
Brycetechs new tut dvd http://tinyurl.com/2u7rpk
The Pixel Palladium
Bryce Newby help and tuts, d/l,s How 2s Updated 18 Apr 2008
Back to top
View users profile Send private message Send email Visit posters website
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> Rootkit Revelations All times are GMT
Goto page Previous  1, 2
Page 2 of 2

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer