- Title
- Windows rootkits: Attacks and countermeasures
- Creator
- Lobo, Desmond; Watters, Paul; Wu, Xin; Sun, Li
- Date
- 2010
- Type
- Text; Conference proceedings
- Identifier
- http://researchonline.federation.edu.au/vital/access/HandleResolver/1959.17/59107
- Identifier
- vital:3834
- Abstract
- Windows XP is the dominant operating system in the world today and rootkits have been a major concern for XP users. This paper provides an in-depth analysis of the rootkits that target that operating system, while focusing on those that use various hooking techniques to hide malware on a machine. We identify some of the weaknesses in the Windows XP architecture that rootkits exploit and then evaluate some of the anti-rootkit security features that Microsoft has unveiled in Vista and 7. To reduce the number of rootkit infections in the future, we suggest that Microsoft should take full advantage of Intel's four distinct privilege levels. © 2010 IEEE.
- Publisher
- Ballarat, VIC
- Rights
- Open Access
- Rights
- This metadata is freely available under a CCO license
- Subject
- Computer security; Intel's ring architecture; Malicious software (malware); Microsoft Windows; Rootkits; Malicious software; Microsoft windows; Ring architecture; Computer architecture; Computer crime; Security of data; Security systems; Windows operating system
- Full Text
- Hits: 2521
- Visitors: 2518
- Downloads: 109
Thumbnail | File | Description | Size | Format | |||
---|---|---|---|---|---|---|---|
View Details Download | SOURCE1 | Published version | 331 KB | Adobe Acrobat PDF | View Details Download |