Rootkits
What are Rootkits?
A rootkit is a software system that consists of a program or combination of several programs designed to hide or obscure the fact that a computer system has been compromised. Contrary to what its name implies a rootkit does not grant you administrator access as it requires prior access to execute and tamper with security files and processes.
A hacker may attempt to use a rootkit to replace vital system executables which may then be used to hide processes and files the hacker has installed along with the presence of the rootkit. A rootkit is intended to seize control of the operating system. Typically rootkits act to obscure their presence on the system through subversion or evasion of standard operating system security mechanisms.
Often they are Trojans as well thus fooling users into believing they are safe to run on their systems. Rootkits may also install a “backdoor” in a system by replacing the login mechanism with an executable that accepts a secret login combination which in turn allows an attacker to access the system regardless of changes to the actual accounts on the system.
List of Rootkits Parasites:
Viewing 15 of 15
» Win32.TDSS.rtkWin32.TDSS.rtk is a detection method for malicious files or a trojan that may infiltrate a computer and install additional malware. Win32.TDSS.rtk utilizes rootkit techniques in order to remain undetected by security programs....
Read more »
» <!--:en-->Rootkit.Win32.Agent.uok<!--:-->
Rootkit.Win32.Agent.uok is a dangerous rootkit infection that is able to hide malicious files so they are not detected by security applications. Rootkit.Win32.Agent.uok can mask other dangerous computer parasites for large amounts of time while they can cause damage to the infected computer. Rootkit.Win32.Agent.uok is difficult to ...
Read more »
» <!--:en-->Rootkit.Order<!--:-->
Rootkit.Order is a dangerous rootkit program that can be dropped by other malware or obtained when visiting malicious websites. When inside a PC, Rootkit.Order targets files with filenames that include the word "order" in them. Rootkit.Order is usually found attacking financial institutions and stealing confidential information ...
Read more »
» <!--:en-->BackDoor-Spyeye!rootkit<!--:-->
BackDoor-Spyeye!rootkit is the rootkit component of BackDoor-Spyeye. BackDoor-Spyeye!rootkit is used to hide folders, files, registry keys and processes created by BackDoor-Spyeye in order to avoid detection by malware removal tools....
Read more »
» <!--:en-->Generic Rootkit.ej<!--:-->
Generic Rootkit.ej is a device driver that is used to conceal the presence of malicious malware in a user's PC. Generic Rootkit.ej can also hide files, processes, registry keys and network connections. On entering a system, Generic Rootkit.ej will also create a registry entry that will ...
Read more »

English 
Deutsch
Español
Français
Portuguese