4 ms·
Come on, bootkits are hardly new. You can detect them by just like you'd detect a rootkit, as they rather rarely cover each and every system API that can reveal
by wmt 11y ago
Come on, bootkits are hardly new. You can detect them by just like you'd detect a rootkit, as they rather rarely cover each and every system API that can reveal its presence, and you remove them by firdt booting into an alternative OS, which most AV vendors provide.
For malware to be really tricky to remove you'd have to start infecting hardware firmware like BIOS or harddrive controllers, like IRATEMONK or IRONCHEF from NSA TAO do.
- SeanDav 11y agoAgreed, these have been around since even before Windows, back to the days of DOS.
- SixSigma 11y agoRemember the rootkit that lived in Mac keyboards ? http://www.zdnet.com/article/hacker-demos-persistent-mac-keyboard-attack/ http://www.zdnet.com/article/hacker-demos-persistent-mac-key... Or Thunderstrike ? http://www.zdnet.com/article/macs-vulnerable-to-virtually-undetectable-virus-that-cant-be-removed/ http://www.zdnet.com/article/macs-vulnerable-to-virtually-un...