Rootkit Revealer 1.71 - All free software
Friday, 2010-09-10, 1:16 Am
Home page
Friends
RapidShare Katz
Category
Graphics
Internet
DVD, CD
Audio
Video
Security Tools
Misc
MS Programs
Search
Archive
Polls
Content you like
All answer: 971
Tags
Windows XP DVD Microsoft Office KIS Avira Firewall Spyware IP Office Windows 7 Malware XP photo eset Norton ZoneAlarm Antivirus McAfee avg nod32
All free software
Home page » 2009 » May » 26 » Rootkit Revealer 1.71

Rootkit Revealer 1.71
2:36 PM

RootkitRevealer is an advanced rootkit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and file system API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit.
RootkitRevealer successfully detects many persistent rootkits including AFX, Vanquish and HackerDefender (note: RootkitRevealer is not intended to detect rootkits like Fu that don't attempt to hide their files or registry keys).

Since persistent rootkits work by changing API results so that a system view using APIs differs from the actual view in storage, RootkitRevealer compares the results of a system scan at the highest level with that at the lowest level. The highest level is the Windows API and the lowest level is the raw contents of a file system volume or Registry hive (a hive file is the Registry's on-disk storage format).

Thus, rootkits, whether user mode or kernel mode, that manipulate the Windows API or native API to remove their presence from a directory listing, for example, will be seen by RootkitRevealer as a discrepancy between the information returned by the Windows API and that seen in the raw scan of a FAT or NTFS volume's file system structures.

Download:
http://www.file-rack.com/files/tlOJIXzjPFf0/Rootkit-Revealer-1.71.rar.html

Category: Security Tools | Reads: 725 | Add: mmobile | Tags: Rootkit
All comments: 0
Имя *:
Email:
Код *:

Trubke.Net © 2006-2010