Here is an excerpt from LangaList newsletter
2005/04/17:9) "Rootkits"
A timely question, Michael--- there's growing activity in this area. A "rootkit" is a kind of software that activates each time the system boots. Malware installed as a rootkit is hard to find and very difficult to control because it's up and running before most of the rest of the OS is ready; and certainly before the user interface is up. Rootkits can be a problem for 2K/XP and Unix-like OSes (including Linux, Mac OSX, etc.). End-user tools are only just now becoming available for this class of malware; most presume a fair degree of knowledge on the part of the user. Examples:
http://research.microsoft.com/rootkit/ Reader Richard Schimpff also contacted me about
rootkits and provided some links, including this:
http://www.eweek.com/article2/0,1759,1785621,00.asp (Thanks, Richard!)
|