Research of Rootkit Technology and Detection Method

JIANG Hui,YANG Feng,DUAN Hai-xin
DOI: https://doi.org/10.3969/j.issn.1000-1220.2012.05.016
2012-01-01
Abstract:In recent years,the purpose of malicious code is changing to economic benefit instead of making damage and gain fame and glory.The malicious authors put more efforts to hide their malware.Rootkit has the characteristics of strong hidden ability and high privilege.So it is a serious threat of host security.As Hardware Virtualization Technology comes out,Rootkit extends to the outside of operating system and presents new challenges to detection technology.This paper,makes a summary of Rootkit hiding and detection technology these years,analysis the problem them facing and discusses the trends of Rootkit detection technology.
What problem does this paper attempt to address?