Just Asking: Do you think consumer computer security products protect you from tampering by vendors and the government?

After running two rootkit detection programs, I wondered how likely it would be that the security vendor, whose largest client may be computer software vendors and the government, would deliberately fail to include government or vendor rootkit signatures into their product? Thus, rendering these rootkits as a potential compromise to your system if they were used by malware evildoers. Pretty much in the same manner that the Sony Digital Rights Management system was easily compromised to allow evildoers to hide malware on any system that contained Sony’s software.

A rootkit is a stealthy type of software, often malicious, designed to hide the existence of certain processes or programs from normal methods of detection and enable continued privileged access to a computer.[1] The term rootkit is a concatenation of "root" (the traditional name of the privileged account on Unix operating systems) and the word "kit" (which refers to the software components that implement the tool). The term "rootkit" has negative connotations through its association with malware.  <Source>

For those who want to scan their systems for rootkits, here are two free tools that are extremely fast.

Bitdefender’s Rootkit Remover


Kaspersky’s TDSSKiller


Bottom line …

Keep your programs updated and use decent anti-virus/anti-malware programs. I personally use ESET Smart Security (for it’s lighter footprint and less intrusive behavior), but use other products to scan for malware on a regular basis.

