Log in Register FAQ Memberlist Search Welcome to RCF - WHF Forum Index
alt : test.swf
Welcome to RCF - WHF
4fx3.gif 
calendar_open_closeCalendar 
Microsoft Says Recovery from Malware Becoming Impossible...
Post new topic   Reply to topic View previous topic :: View next topic
Welcome to RCF - WHF Forum Index -> Talk PC Add To Bookmarks
Microsoft Says Recovery from Malware Becoming Impossible...
PostPosted: 04/07/2006 2:04 AM Reply with quote
Site Admin
Nightrider
Site Admin
Posts 30757
Word Cnt. 2,628,690
BDay Jul 28
Sign Leo
Sex Sex:Male
Joined: Sep 25, 2004
Local time: 8:12 AM
Location: St Pete, FL
peace.gif
Microsoft Says Recovery from Malware Becoming Impossible

LAKE BUENA VISTA, Fla.—In a rare discussion about the severity of the Windows malware scourge, a Microsoft security official said businesses should consider investing in an automated process to wipe hard drives and reinstall operating systems as a practical way to recover from malware infestation.

"When you are dealing with rootkits and some advanced spyware programs, the only solution is to rebuild from scratch. In some cases, there really is no way to recover without nuking the systems from orbit," Mike Danseglio, program manager in the Security Solutions group at Microsoft, said in a presentation at the InfoSec World conference here.

Offensive rootkits, which are used hide malware programs and maintain an undetectable presence on an infected machine, have become the weapon of choice for virus and spyware writers and, because they often use kernel hooks to avoid detection, Danseglio said IT administrators may never know if all traces of a rootkit have been successfully removed.

He cited a recent instance where an unnamed branch of the U.S. government struggled with malware infestations on more than 2,000 client machines. "In that case, it was so severe that trying to recover was meaningless. They did not have an automated process to wipe and rebuild the systems, so it became a burden. They had to design a process real fast," Danseglio added.

Danseglio, who delivered two separate presentations at the conference—one on threats and countermeasures to defend against malware infestations in Windows, and the other on the frightening world on Windows rootkits—said anti-virus software is getting better at detecting and removing the latest threats, but for some sophisticated forms of malware, he conceded that the cleanup process is "just way too hard."

Microsoft says stealth rootkits are bombarding Windows XP SP2 machines..

"We've seen the self-healing malware that actually detects that you're trying to get rid of it. You remove it, and the next time you look in that directory, it's sitting there. It can simply reinstall itself," he said.

"Detection is difficult, and remediation is often impossible," Danseglio declared. "If it doesn't crash your system or cause your system to freeze, how do you know it's there? The answer is you just don't know. Lots of times, you never see the infection occur in real time, and you don't see the malware lingering or running in the background."

More...
Back to Top
View all pictures posted by this userView user's profile Find all posts by Nightrider Send private message   AIM Address Yahoo Messenger Phoogle Map ICQ Number
Re: Microsoft Says Recovery from Malware Becoming Impossible...
PostPosted: 04/07/2006 9:50 PM Reply with quote
Citation
KeeKee
Citation
Posts 940
Word Cnt. 48,215
BDay Mar 4
Sign Pisces
Sex Sex:Female
Joined: Mar 20, 2006
Local time: 7:12 AM
usaCa.gif
Hummmm I know if malware gets thru on my system I don't fight it just wipe and go. I thought I jsut wasn't smart enough to get the stuff out in less than 3 months.
Back to Top
View user's profile Find all posts by KeeKee Send private message   Visit poster's website Yahoo Messenger Phoogle Map ICQ Number
Re: Microsoft Says Recovery from Malware Becoming Impossible...
PostPosted: 04/07/2006 11:55 PM Reply with quote
Citation
bigR
Citation
Posts 3489
Word Cnt. 137,488
BDay Mar 5
Sign Pisces
Sex Sex:Female
Joined: Oct 14, 2004
Local time: 7:12 AM
Location: Texas
blank.gif
Quote:
In a rare discussion about the severity of the Windows malware scourge, a Microsoft security official said businesses should consider investing in an automated process to wipe hard drives and reinstall operating systems as a practical way to recover from malware infestation.


And how many times can you re-activate Win XP before it won't install? Then you have to call Microsoft. What is MS doing about that detail?
Back to Top
View user's profile Find all posts by bigR Send private message  
Microsoft Says Recovery from Malware Becoming Impossible...
PostPosted: 04/09/2006 4:47 PM Reply with quote
Site Admin
rb2d2
Site Admin
Posts 49593
Word Cnt. 2,756,445
BDay Apr 22
Sign Taurus
Sex Sex:Female
Joined: Sep 25, 2004
Local time: 6:12 AM
Location: Texas
texasC.gif
Quote:
And how many times can you re-activate Win XP

I have often wonder about how that works. Or doesn't work.

I thought Nightrider might have been over reacting to XP when he told me to stick with W2K but I have thanked my lucky stars many times for listening to him.  I know XP has some nice features but I'm very happy with W2K and have no plans to upgrade to any other OS.  Will have to see what the new one will be like but so far it's not off to a good start!


Brick wall
Back to Top
View all pictures posted by this userView user's profile Find all posts by rb2d2 Send private message   Visit poster's website Phoogle Map
Microsoft Says Recovery from Malware Becoming Impossible...
PostPosted: 04/12/2006 8:47 AM Reply with quote
Citation
fishead
Citation
Posts 4814
Word Cnt. 427,902
BDay Oct 23
Sign Scorpio
Sex Sex:Male
Joined: Feb 09, 2005
Local time: 8:12 PM
Location: Sterling IL
usaCa.gif
rb, what is WK2?

Thats why I like to nuc my pc everyone once in awhile, I had a feeling this was going on. Hp puts one in and this white icon shows itself every 2 minutes to take snapshots of my pc, and I don't like it.

Backup, backup, backup! I do this twice a month.
Back to Top
View all pictures posted by this userView user's profile Find all posts by fishead Send private message   Visit poster's website Phoogle Map Visit poster's Blog
Microsoft Says Recovery from Malware Becoming Impossible...
PostPosted: 04/12/2006 2:33 PM Reply with quote
Site Admin
rb2d2
Site Admin
Posts 49593
Word Cnt. 2,756,445
BDay Apr 22
Sign Taurus
Sex Sex:Female
Joined: Sep 25, 2004
Local time: 6:12 AM
Location: Texas
texasC.gif
Fishead, W2K is Windows 2000.  I can load it and reload it all I want and don't have to answer to anyone.  LOL

sunny

Quote:
this white icon shows itself every 2 minutes to take snapshots of my pc

That does not sound good, fishead!!  Man I would worry about that.  Do you know what it is and what it's doing with the snap shots?


Shocked


Backing up is good but you need to be careful what you back up.  You might be just backing up your problems.  I try to get the PC in as good a shape and cleaned up as I can before I create an image of it.   If you back up serious problems you are just going to restore them later.

Crying or Very sad
Back to Top
View all pictures posted by this userView user's profile Find all posts by rb2d2 Send private message   Visit poster's website Phoogle Map
 Post new topic  Reply to topic
Information
Welcome to RCF - WHF Forum Index -> Talk PC

You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum
All times are GMT - 5 Hours

Page 1 of 1


Add To Bookmarks

 
  
  


  Google

Powered by phpBB © 2001, 2005 phpBB Group

Page generation time: 0.1442s (PHP: 50% - SQL: 50%) - SQL queries: 45 - GZIP disabled - Debug on