If you get rooted the only safe thing to do it rebuild the system go back to a pree rootkit data restore, run the logs forward and pray..
Yup. Glad I don't run windows.
What really should worry folks though, is the work that is surely being done on VM-type rootkits that load before the OS. It will be interesting to see how these criminals make use of the new VM code coming out in the latest processors.