Security 10809 Published by

GHacks.net posted a guide about detecting a 64-bit Alureon Rootkit Infection



Alureon, or TDL, TLD3 and Tidserv, is the first rootkit that can infect 64-bit Windows PCs. Before that, only 32-bit systems were affected by rootkits, and many Windows users realized that in February, when Microsoft patch MS10-015 caused infected machines to display a blue screen. It obviously was not Microsoft’s fault back then, which was first assumed by professionals and users alike. It turned out after some research that the TLD3 rootkit was responsible for that behavior.
  How To Detect A 64-bit Alureon Rootkit Infection