"RootkitRevealer is an advanced root kit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and file system API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit." Freeware from SysInternals.
Comments:
Fooling anti-spyware tools
by Ron
The concept of rootkits makes me feel that once you get a hint that a system is "tainted" the only right thing to do is flatten it and the rebuld it. Hopefully with more defenses and a more cautious user.
Add a comment