<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: Skynet Rootkit – When Malware with Movie Names Attack!</title> <atom:link href="http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/feed/" rel="self" type="application/rss+xml" /><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/</link> <description>Antivirus Reviews For 2011 / 2012, Tools and How To&#039;s</description> <lastBuildDate>Mon, 21 May 2012 21:20:00 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.2</generator> <xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /> <item><title>By: Sam</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-5162</link> <dc:creator>Sam</dc:creator> <pubDate>Sat, 26 Dec 2009 03:28:11 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-5162</guid> <description>FYIThe session, titled &quot;Vista: How Secure Are We?,&quot; was presented by David Tan, co-founder and chief technology officer at CHIPS Computer Consulting.By Moore&#039;s side were equally prestigious hackers Joanna Rutkowska—security researcher at COSEINC—and Jon &quot;Johnny Cache&quot; Ellch, author of &quot;Hacking Exposed Wireless.&quot;Not all bugs are being detected by Vista,&quot; pointed out famed hacker H.D. Moore. &quot;Look at how a hacker gets access to the driver: Right now I&#039;m working on Microsoft&#039;s automated process to get Metasploit-certified. It [only] costs $500.&quot;Moore is the founder of the Metasploit Project and a core developer of the Metasploit Framework—the leading open-source exploit development platform—and is also director of security research at BreakingPoint Systems. The irony of his statement lies in the idea that Vista trusts Microsoft-certified programs—programs that can include a hacker exploit platform that walks through the front door for a mere $500 and a conveyor-belt approval process.For her part, Rutkowska granted that yes, one way to own a Vista system is by getting a rootkit certified, but if you want a compromised system, you don&#039;t even have to waste your time and money with certification—&quot;It can be a graphics card with a stupid bug,&quot; she said. &quot;You can&#039;t do anything about it. You can&#039;t sue the vendor for introducing a bug. You can&#039;t prove it was done intentionally.&quot;Until Microsoft or some security vendor concocts a black list for buggy drivers, Rutkowska said, Vista is potential toast. Of course, bugs can always be detected in memory, right? Except—oops!—Rutkowska</description> <content:encoded><![CDATA[<p>FYI</p><p>The session, titled &#8220;Vista: How Secure Are We?,&#8221; was presented by David Tan, co-founder and chief technology officer at CHIPS Computer Consulting.</p><p>By Moore&#8217;s side were equally prestigious hackers Joanna Rutkowska—security researcher at COSEINC—and Jon &#8220;Johnny Cache&#8221; Ellch, author of &#8220;Hacking Exposed Wireless.&#8221;</p><p>Not all bugs are being detected by Vista,&#8221; pointed out famed hacker H.D. Moore. &#8220;Look at how a hacker gets access to the driver: Right now I&#8217;m working on Microsoft&#8217;s automated process to get Metasploit-certified. It [only] costs $500.&#8221;</p><p>Moore is the founder of the Metasploit Project and a core developer of the Metasploit Framework—the leading open-source exploit development platform—and is also director of security research at BreakingPoint Systems. The irony of his statement lies in the idea that Vista trusts Microsoft-certified programs—programs that can include a hacker exploit platform that walks through the front door for a mere $500 and a conveyor-belt approval process.</p><p>For her part, Rutkowska granted that yes, one way to own a Vista system is by getting a rootkit certified, but if you want a compromised system, you don&#8217;t even have to waste your time and money with certification—&#8221;It can be a graphics card with a stupid bug,&#8221; she said. &#8220;You can&#8217;t do anything about it. You can&#8217;t sue the vendor for introducing a bug. You can&#8217;t prove it was done intentionally.&#8221;</p><p>Until Microsoft or some security vendor concocts a black list for buggy drivers, Rutkowska said, Vista is potential toast. Of course, bugs can always be detected in memory, right? Except—oops!—Rutkowska</p> ]]></content:encoded> </item> <item><title>By: Corey B</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3743</link> <dc:creator>Corey B</dc:creator> <pubDate>Sun, 16 Aug 2009 06:11:48 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3743</guid> <description>haha dude, iv&#039;e had this piece of crap .dll forever
and i havent though of running combofix xD
thanks :)</description> <content:encoded><![CDATA[<p>haha dude, iv&#8217;e had this piece of crap .dll forever<br
/> and i havent though of running combofix xD<br
/> thanks <img
src='http://remove-malware.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p> ]]></content:encoded> </item> <item><title>By: Dieselman</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3738</link> <dc:creator>Dieselman</dc:creator> <pubDate>Fri, 14 Aug 2009 23:22:58 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3738</guid> <description>Read this for why you do not need a Sandbox on 64 bit systems.http://www.sandboxie.com/index.php?WindowsVista64</description> <content:encoded><![CDATA[<p>Read this for why you do not need a Sandbox on 64 bit systems.</p><p><a
href="http://www.sandboxie.com/index.php?WindowsVista64" rel="nofollow">http://www.sandboxie.com/index.php?WindowsVista64</a></p> ]]></content:encoded> </item> <item><title>By: Bo</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3737</link> <dc:creator>Bo</dc:creator> <pubDate>Fri, 14 Aug 2009 22:48:47 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3737</guid> <description>Why don&#039;t rootkits work on x64 systems?  Any sources you could cite to help me understand?</description> <content:encoded><![CDATA[<p>Why don&#8217;t rootkits work on x64 systems?  Any sources you could cite to help me understand?</p> ]]></content:encoded> </item> <item><title>By: roffe</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3736</link> <dc:creator>roffe</dc:creator> <pubDate>Fri, 14 Aug 2009 21:25:08 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3736</guid> <description>what do you think would have happenet if Tom would have had defenswall, would he have been infected then? Just want to know sinse im using Defenswall and Avira together.</description> <content:encoded><![CDATA[<p>what do you think would have happenet if Tom would have had defenswall, would he have been infected then? Just want to know sinse im using Defenswall and Avira together.</p> ]]></content:encoded> </item> <item><title>By: Victor</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3735</link> <dc:creator>Victor</dc:creator> <pubDate>Fri, 14 Aug 2009 18:07:47 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3735</guid> <description>Matt,Is there any HIPS software that works well on a 64 bits OS?Thanks in advance.</description> <content:encoded><![CDATA[<p>Matt,</p><p>Is there any HIPS software that works well on a 64 bits OS?</p><p>Thanks in advance.</p> ]]></content:encoded> </item> <item><title>By: malwarekilla</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3734</link> <dc:creator>malwarekilla</dc:creator> <pubDate>Fri, 14 Aug 2009 14:28:25 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3734</guid> <description>@rescuenerds  - just like the good&#039;ole days of removing malware :)  It still blows me away that malware coders haven&#039;t found a way to patch the OS to allow rootkits on x64.</description> <content:encoded><![CDATA[<p>@rescuenerds  &#8211; just like the good&#8217;ole days of removing malware <img
src='http://remove-malware.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> It still blows me away that malware coders haven&#8217;t found a way to patch the OS to allow rootkits on x64.</p> ]]></content:encoded> </item> <item><title>By: malwarekilla</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3733</link> <dc:creator>malwarekilla</dc:creator> <pubDate>Fri, 14 Aug 2009 14:24:24 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3733</guid> <description>@medeis - not enough to deal with douchebag&#039;s like you...</description> <content:encoded><![CDATA[<p>@medeis &#8211; not enough to deal with douchebag&#8217;s like you&#8230;</p> ]]></content:encoded> </item> <item><title>By: medeis</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3732</link> <dc:creator>medeis</dc:creator> <pubDate>Fri, 14 Aug 2009 13:14:11 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3732</guid> <description>:D. You are so funny malwarekilla. How much money kaspersky give you?</description> <content:encoded><![CDATA[<p> <img
src='http://remove-malware.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> . You are so funny malwarekilla. How much money kaspersky give you?</p> ]]></content:encoded> </item> <item><title>By: rescuenerds</title><link>http://remove-malware.com/malware/rootkits/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3728</link> <dc:creator>rescuenerds</dc:creator> <pubDate>Fri, 14 Aug 2009 04:25:15 +0000</pubDate> <guid
isPermaLink="false">http://remove-malware.com/uncategorized/skynet-rootkit-%e2%80%93-when-malware-with-movie-names-attack/#comment-3728</guid> <description>The truth is - if you&#039;re using Vista x64 or Win 7 x64 you won&#039;t get rootkits. The architecture won&#039;t allow it. So it&#039;s pretty straightforward to remove infections. Whenever we see an infection on Vista x64, it&#039;s usually just a regular program that autostarts at boot. You can kill it&#039;s process, delete the startup entry, and delete the files/folders and - viola! - no more infection. A quick scan with an antimalware like malwarebytes or kaspersky to clean up behind you and you&#039;re done.</description> <content:encoded><![CDATA[<p>The truth is &#8211; if you&#8217;re using Vista x64 or Win 7 x64 you won&#8217;t get rootkits. The architecture won&#8217;t allow it. So it&#8217;s pretty straightforward to remove infections. Whenever we see an infection on Vista x64, it&#8217;s usually just a regular program that autostarts at boot. You can kill it&#8217;s process, delete the startup entry, and delete the files/folders and &#8211; viola! &#8211; no more infection. A quick scan with an antimalware like malwarebytes or kaspersky to clean up behind you and you&#8217;re done.</p> ]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced (User agent is rejected)
Database Caching 1/12 queries in 0.004 seconds using disk: basic
Object Caching 590/608 objects using disk: basic

Served from: remove-malware.com @ 2012-05-22 23:31:55 -->
