• Banned

                                  ROOTKITS
    
    • Rootkit - is a software which is designed to enable the acess of a device to the unauthorized users.Somehow rootkits are malicious.

    Recently Microsoft signed a Malicious driver named "Netfilter" which was targeting the gamers mostly.The also admitted of signing it and giving an assurance to give fresh driver updates that will remove the existing malicious driver.In this ,The host can acess everything in your computer without proper authentication/permission.

    What signing actually means here-

    • Signing a driver refers that the driver is verified/safe.

    The Malicious driver was sending the data to a service center in China, refer the picture below to know more. (according to whois services)

    IMG_20210807_041214.jpg

    Classification types (Virustotal)
    IMG_20210807_041323.jpg

    Detected Malicious by these security services & more
    IMG_20210807_041608.jpg

    To view a complete summary including hashes/detection visit Here

    SIGNING INFORMATION IMG_20210807_041824.jpg :

    Educational purposes only & there can be mistakes in this post ,please tell me them if you found any and I will definitely change it.

    I don't know if anyone care or not. I just make these posts to get rid of boredom. Hit Upvote if you like it and please give more suggestion for new posts also ignore grammar mistakes

    @Science-and-Philosophy

    :))


  • Great Artcle NewUser.. I hate hate that app from MS.. also dislike the way they are forcing users to use The EDGE.. they really slowly chipping away at freedom of choice in apps and programs.. sad