An article from eweek that oulines what F-secure is seeing on the rootkit front. They say their results mirror Microsoft's, but take it for what its worth. What is interesting is that the article names several adware companies that are using increased stealthing tactics to prevent detection, including one using a polymorphic wrapper.

http://www.eweek.com/article2/0,1895,1897728,00.asp