Rootkit Revealer Background
Rootkit Revealer Icon

RootkitRevealer is an advanced rootkit detection utility.

18
Downloads
-
0 Ratings
All Versions
18
Total Downloads
0
Downloads Last Week
Current Version
18
Total Downloads
0
Downloads Last Week
Downloads Last 10 Weeks
All Versions
-
0 Ratings
5
4
3
2
1
Current Version
-
0 Ratings
5
4
3
2
1

Rootkit RevealerOverview

RootkitRevealer is an advanced rootkit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and file system API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit.

RootkitRevealer successfully detects many persistent rootkits including AFX, Vanquish and HackerDefender (note: RootkitRevealer is not intended to detect rootkits like Fu that don't attempt to hide their files or registry keys).

Since persistent rootkits work by changing API results so that a system view using APIs differs from the actual view in storage, RootkitRevealer compares the results of a system scan at the highest level with that at the lowest level. The highest level is the Windows API and the lowest level is the raw contents of a file system volume or Registry hive (a hive file is the Registry's on-disk storage format).

Thus, rootkits, whether user mode or kernel mode, that manipulate the Windows API or native API to remove their presence from a directory listing, for example, will be seen by RootkitRevealer as a discrepancy between the information returned by the Windows API and that seen in the raw scan of a FAT or NTFS volume's file system structures.

New

Fixed some bugs.

Rootkit RevealerTech Specs

Version
1.71
Date
11.11.06
License
Free
Language
English
File Size
226KB
Category
SubCategory
Operating Systems
Windows 2000 / XP / 2003 / Vista / Windows7
System Requirements
No additional system requirements.

SelectedFor You

Spyware Terminator Icon
PCRx.com
Free real-time protection against spyware and adware.
SpywareBlaster Icon
Javacool Software LLC.
SpywareBlaster - anti spyware,clean spyware,provide protection solution.
Malwarebytes Anti-Exploit Icon
Malwarebytes
Wrap three layers of security around popular browsers and applications, preventing exploits from compromising vulnerable code.
Scan Spyware Icon
PC Security Center
ScanSpyware removes spyware, adware and other malicious programs safely.
WinPatrol Icon
BillP Studios
WinPatrol offers very powerful protection.
SuperAntiSpyware Free Edition Icon
SUPERAntiSpyware
Detect and remove spyware, malware, rootkits, trojans, hijackers, and other malicious threats.
Rootkit Revealer Icon
Microsoft SysInternals
RootkitRevealer is an advanced rootkit detection utility.
Windows Defender Icon
Microsoft Corporation
Windows Defender protect your files and personal settings, and protect password.