hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Rootkit Revealer
tibbar
See: http://www.sysinternals.com/ntw2k/freeware...kitreveal.shtml

QUOTE
Introduction
RootkitRevealer is an advanced root kit detection utility. It runs on Windows NT
4 and higher and its output lists Registry and file system API discrepancies that
may indicate the presence of a user-mode or kernel-mode rootkit. RootkitRevealer successfully detects all persistent rootkits published at www.rootkit.com, including AFX, Vanquish and HackerDefender (note: RootkitRevealer is not intended to detect memory-based rootkits like Fu that don't survive reboots).


Get it from:

http://www.sysinternals.com/files/rootkitrevealer.zip
bullit
thnx dude for this nice tool..
will try it on my network..

i hope i don't find anyting smile.gif
bonarez
looks great, too bad it crashed on my system.. both the commandline and the gui sad.gif
kingvandal
hmm.. nice showed directories I did not knew exsisted. for instance:

c:\$extend = Access Denied

Cannot set premission, Attributes, even logged in as SYSTEM will not show or allow access to this folder.

Any ideas?
tibbar
this is one of ntfs's protected folders i believe, nothing to worry about.

it's any coming up as hidden to be concerned about.
kingvandal
QUOTE(tibbar @ Feb 23 2005, 10:32 PM)
this is one of ntfs's protected folders i believe, nothing to worry about.

it's any coming up as hidden to be concerned about.
*



Intresting so you cannot access this folder?
tuby
A nice paper about anti-rootkit tools :

http://blogs.msdn.com/robert_hensing


Enjoy
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.